diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 847bb45a..335560d5 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -55,7 +55,7 @@ jobs: # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@cdefb33c0f6224e58673d9004f47f7cb3e328b89 # v4 + uses: github/codeql-action/init@19b2f06db2b6f5108140aeb04014ef02b648f789 # v4 with: languages: ${{ matrix.language }} build-mode: none @@ -71,6 +71,6 @@ jobs: pip install -e . - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@cdefb33c0f6224e58673d9004f47f7cb3e328b89 # v4 + uses: github/codeql-action/analyze@19b2f06db2b6f5108140aeb04014ef02b648f789 # v4 with: category: "/language:${{matrix.language}}" diff --git a/.github/workflows/zizmor.yml b/.github/workflows/zizmor.yml index a57e0f39..1fea2531 100644 --- a/.github/workflows/zizmor.yml +++ b/.github/workflows/zizmor.yml @@ -18,4 +18,4 @@ jobs: with: persist-credentials: false - name: Run zizmor 🌈 - uses: zizmorcore/zizmor-action@7462f075f718787753331c6d98ca9ef8eb41e735 + uses: zizmorcore/zizmor-action@867562a69bb7adcc63dd1e8c003600a58b5f70e2