Skip to content

Commit edea77d

Browse files
chore(deps): update github actions
1 parent 9a0ff7a commit edea77d

3 files changed

Lines changed: 21 additions & 21 deletions

File tree

.github/workflows/build.yaml

Lines changed: 13 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -47,30 +47,30 @@ jobs:
4747
timeout-minutes: 10
4848
steps:
4949
- name: Checkout
50-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
50+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
5151
with:
5252
fetch-depth: '0'
5353
- name: Set up JDK
54-
uses: actions/setup-java@99b8673ff64fbf99d8d325f52d9a5bdedb8483e9 # v4.2.1
54+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
5555
with:
5656
java-version: '17.0.10'
5757
distribution: 'liberica'
5858
architecture: 'x64'
59-
- uses: gradle/wrapper-validation-action@699bb18358f12c5b78b37bb0111d3a0e2276e0e2 # v2.1.1
59+
- uses: gradle/wrapper-validation-action@b5418f5a58f5fd2eb486dd7efb368fe7be7eae45 # v2.1.3
6060
- name: Set up Gradle
61-
uses: gradle/gradle-build-action@29c0906b64b8fc82467890bfb7a0a7ef34bda89e # v3.1.0
61+
uses: gradle/gradle-build-action@ac2d340dc04d9e1113182899e983b5400c17cda1 # v3.5.0
6262
with:
6363
generate-job-summary: true
6464
dependency-graph: generate-and-submit
6565
- name: Install cosign
6666
if: ${{ inputs.sign }}
67-
uses: sigstore/cosign-installer@e1523de7571e31dbe865fd2e80c5c7c23ae71eb4 # v3.4.0
67+
uses: sigstore/cosign-installer@3454372f43399081ed03b604cb2d021dabca52bb # v3.8.2
6868
with:
6969
cosign-release: 'v2.1.1'
7070
- name: Set up QEMU
71-
uses: docker/setup-qemu-action@68827325e0b33c7199eb31dd4e31fbe9023e06e3 # v3.0.0
71+
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # v3.6.0
7272
- name: Set up Docker Buildx
73-
uses: docker/setup-buildx-action@2b51285047da1547ffb1b2203d8be4c0af6b1f20 # v3.2.0
73+
uses: docker/setup-buildx-action@b5ca514318bd6ebac0fb2aedd5d36ec1b5c232a2 # v3.10.0
7474

7575
- name: Build
7676
env:
@@ -84,23 +84,23 @@ jobs:
8484
run: ./gradlew quarkusIntTest
8585
- name: Upload build reports
8686
if: always()
87-
uses: actions/upload-artifact@5d5d22a31266ced268874388b861e4b58bb5c2f3 # v4.3.1
87+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
8888
with:
8989
name: build-reports
9090
path: |
9191
build/reports/
9292
!build/reports/configuration-cache
9393
- name: Upload jar
9494
if: ${{ inputs.upload }}
95-
uses: actions/upload-artifact@5d5d22a31266ced268874388b861e4b58bb5c2f3 # v4.3.1
95+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
9696
with:
9797
name: pulsar-bookie-utils-${{ inputs.version }}.jar
9898
path: build/quarkus-build/gen/pulsar-bookie-utils-${{ inputs.version }}-runner.jar
9999
- name: Rename jar
100100
run: mv "build/pulsar-bookie-utils-${{ inputs.version }}-runner.jar" "pulsar-bookie-utils-${{ inputs.version }}.jar"
101101
- name: Add jar to release
102102
if: ${{ github.event_name == 'release' && inputs.upload }}
103-
uses: softprops/action-gh-release@9d7c94cfd0a1f3ed45544c887983e9fa900f0564 # v2.0.4
103+
uses: softprops/action-gh-release@d5382d3e6f2fa7bd53cb749d33091853d4985daf # v2.3.0
104104
with:
105105
tag_name: ${{ inputs.version }}
106106
files: |
@@ -111,19 +111,19 @@ jobs:
111111
QUARKUS_PACKAGE_TYPE: "fast-jar"
112112
run: ./gradlew build
113113
- name: Registry login
114-
uses: docker/login-action@e92390c5fb421da1463c202d546fed0ec5c39f20 # v3.1.0
114+
uses: docker/login-action@74a5d142397b4f367a81961eba4e8cd7edddf772 # v3.4.0
115115
with:
116116
registry: ${{ env.REGISTRY }}
117117
username: ${{ github.actor }}
118118
password: ${{ secrets.GITHUB_TOKEN }}
119119
- name: Extract docker metadata (tags, labels)
120120
id: meta
121-
uses: docker/metadata-action@8e5442c4ef9f78752691e2d8f8d19755c6f78e81 # v5.5.1
121+
uses: docker/metadata-action@902fa8ec7d6ecbf8d84d538b9b233a880e428804 # v5.7.0
122122
with:
123123
images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}
124124
- name: Build and push
125125
id: build-and-push
126-
uses: docker/build-push-action@2cdde995de11925a030ce8070c3d77a52ffcf1c0 # v5.3.0
126+
uses: docker/build-push-action@ca052bb54ab0790a636c9b5f226502c73d547a25 # v5.4.0
127127
with:
128128
context: .
129129
platforms: linux/amd64,linux/arm64

.github/workflows/determine_version.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -12,13 +12,13 @@ jobs:
1212
timeout-minutes: 5
1313
steps:
1414
- name: Checkout
15-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
15+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
1616
with:
1717
fetch-depth: '0'
1818
- name: Set up Go
19-
uses: actions/setup-go@0c52d547c9bc32b1aa3301fd7a9cb496313a4491 # v5.0.0
19+
uses: actions/setup-go@d35c59abb061a4a6fb18e82ac0862c26744d6ab5 # v5.5.0
2020
with:
21-
go-version: 1.21.3
21+
go-version: 1.24.4
2222
- name: Install SVU
2323
run: go install github.com/caarlos0/svu@00b733b056534c0fbdb316bbd37c023e7bb80905 #v1.11.0
2424
- name: Get branch name (merge)

.github/workflows/owasp.yaml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -24,18 +24,18 @@ jobs:
2424
timeout-minutes: 15
2525
steps:
2626
- name: Checkout
27-
uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
27+
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
2828
with:
2929
fetch-depth: '0'
3030
- name: Set up JDK
31-
uses: actions/setup-java@99b8673ff64fbf99d8d325f52d9a5bdedb8483e9 # v4.2.1
31+
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
3232
with:
3333
java-version: '17.0.10'
3434
distribution: 'liberica'
3535
architecture: 'x64'
36-
- uses: gradle/wrapper-validation-action@699bb18358f12c5b78b37bb0111d3a0e2276e0e2 # v2.1.1
36+
- uses: gradle/wrapper-validation-action@b5418f5a58f5fd2eb486dd7efb368fe7be7eae45 # v2.1.3
3737
- name: Set up Gradle
38-
uses: gradle/gradle-build-action@29c0906b64b8fc82467890bfb7a0a7ef34bda89e # v3.1.0
38+
uses: gradle/gradle-build-action@ac2d340dc04d9e1113182899e983b5400c17cda1 # v3.5.0
3939
with:
4040
generate-job-summary: true
4141
dependency-graph: generate-and-submit
@@ -48,7 +48,7 @@ jobs:
4848
run: ./gradlew dependencyCheckAggregate
4949
- name: Upload build reports
5050
if: always()
51-
uses: actions/upload-artifact@5d5d22a31266ced268874388b861e4b58bb5c2f3 # v4.3.1
51+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4.6.2
5252
with:
5353
name: owasp-reports
5454
path: |

0 commit comments

Comments
 (0)