Skip to content

Update the pinned Scorecard checkout and upload-artifact actions - #107

Open
yemine0x01 wants to merge 1 commit into
gridfm:mainfrom
yemine0x01:update-scorecard-pins
Open

yemine0x01 wants to merge 1 commit into
gridfm:mainfrom
yemine0x01:update-scorecard-pins

Conversation

@yemine0x01

Copy link
Copy Markdown
Collaborator

No description provided.

Signed-off-by: yemine0x01 <youssouf.emine@artelys.com>
@romeokienzler

Copy link
Copy Markdown
Collaborator

@yemine0x01 thanks for keeping the pinned actions current — this is a clean, minimal change and the diff keeps the correct @<sha> # <tag> pin format. 👍

What's needed

  • Let checks finish: pre-commit-run, CodeQL, and security-test are already green; pytests and dynamic-pytests are still pending (not failing). Nothing action needed unless they go red — and pytest failures here would almost certainly be unrelated to a workflow-only change.
  • PR description: a one-line note on how you obtained the new SHAs (e.g. Dependabot, or hashes verified against the v7.0.1 tags on actions/checkout and actions/upload-artifact) would let a maintainer confirm the pins quickly.
  • Reviewer: per CONTRIBUTING, please add Alban Puech as a reviewer.

The rest of the checklist (docstrings, type hints, tests, config YAMLs, docs markers) doesn't apply — there's no Python change here. A maintainer will take a look.

— 🤖 _automated pre-review; a maintainer will follow up_

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants