This commit is contained in:
dependabot[bot] 2026-05-19 06:45:15 +00:00 committed by GitHub
commit d3d05a45af
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
3 changed files with 4 additions and 4 deletions

View file

@ -28,9 +28,9 @@ jobs:
persist-credentials: false
- name: Initialize CodeQL
uses: github/codeql-action/init@v4.35.3 # zizmor: ignore[unpinned-uses]
uses: github/codeql-action/init@v4.35.4 # zizmor: ignore[unpinned-uses]
with:
languages: 'python'
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v4.35.3 # zizmor: ignore[unpinned-uses]
uses: github/codeql-action/analyze@v4.35.4 # zizmor: ignore[unpinned-uses]

View file

@ -20,4 +20,4 @@ jobs:
with:
persist-credentials: false
- name: 'Dependency Review'
uses: actions/dependency-review-action@v4.9.0 # zizmor: ignore[unpinned-uses]
uses: actions/dependency-review-action@v5.0.0 # zizmor: ignore[unpinned-uses]

View file

@ -37,6 +37,6 @@ jobs:
publish_results: true
- name: "Upload to code-scanning dashboard"
uses: github/codeql-action/upload-sarif@v4.35.3 # zizmor: ignore[unpinned-uses]
uses: github/codeql-action/upload-sarif@v4.35.4 # zizmor: ignore[unpinned-uses]
with:
sarif_file: results.sarif