diff --git a/.github/workflows/quality.yaml b/.github/workflows/quality.yaml index 8728a1e..f775f11 100644 --- a/.github/workflows/quality.yaml +++ b/.github/workflows/quality.yaml @@ -39,7 +39,7 @@ jobs: pytest --cov=tooling --cov-report=xml --cov-report=term-missing - name: Upload coverage reports - uses: codecov/codecov-action@v4 + uses: codecov/codecov-action@v6 with: files: ./coverage.xml flags: unittests diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index b04184f..7e4326f 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -18,7 +18,7 @@ jobs: steps: - uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 with: { persist-credentials: false } - - uses: ossf/scorecard-action@99c09fe975337306107572b4fdf4db224cf8e2f2 # v2.4.3 + - uses: ossf/scorecard-action@4eaacf0543bb3f2c246792bd56e8cdeffafb205a # v2.4.3 with: results_file: results.sarif results_format: sarif @@ -27,6 +27,6 @@ jobs: with: name: SARIF file path: results.sarif - - uses: github/codeql-action/upload-sarif@3b1a19a80ab047f35cbb237b5bd9bdc1e14f166c # v3 + - uses: github/codeql-action/upload-sarif@5c8a8a642e79153f5d047b10ec1cba1d1cc65699 # v3 with: sarif_file: results.sarif