diff --git a/.github/workflows/comment_on_pr.yml b/.github/workflows/comment_on_pr.yml index 230be20..eab4c37 100644 --- a/.github/workflows/comment_on_pr.yml +++ b/.github/workflows/comment_on_pr.yml @@ -6,7 +6,7 @@ jobs: name: An example job to comment a PR steps: - name: Checkout - uses: actions/checkout@v3 + uses: actions/checkout@v4 - name: Comment PR uses: thollander/actions-comment-pull-request@v2 diff --git a/.github/workflows/dependabot_pr_auto_approve.yml b/.github/workflows/dependabot_pr_auto_approve.yml index 11d2a2e..81e2bee 100644 --- a/.github/workflows/dependabot_pr_auto_approve.yml +++ b/.github/workflows/dependabot_pr_auto_approve.yml @@ -11,7 +11,7 @@ jobs: - name: Dependabot metadata id: dependabot-metadata uses: dependabot/fetch-metadata@v1 - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 - name: Approve a PR if not already approved run: | gh pr checkout "$PR_URL" # sets the upstream metadata for `gh pr status` diff --git a/.github/workflows/gl_scan.yml b/.github/workflows/gl_scan.yml index 1b34604..852179b 100644 --- a/.github/workflows/gl_scan.yml +++ b/.github/workflows/gl_scan.yml @@ -10,7 +10,7 @@ jobs: name: gitleaks runs-on: ubuntu-latest steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: fetch-depth: 0 - uses: gitleaks/gitleaks-action@v2 diff --git a/.github/workflows/main.yaml b/.github/workflows/main.yaml index 625478d..3fb33d6 100644 --- a/.github/workflows/main.yaml +++ b/.github/workflows/main.yaml @@ -12,7 +12,7 @@ jobs: if: github.event.pull_request.merged == true runs-on: [self-hosted, my_docker] steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v4 timeout-minutes: 15 - name: Install dependencies run: | @@ -42,7 +42,7 @@ jobs: needs: [build, docker] runs-on: [self-hosted, k8s] steps: - - uses: actions/checkout@v2.3.4 + - uses: actions/checkout@v4 timeout-minutes: 15 - name: Deploy diff --git a/.github/workflows/sonarqube.yaml b/.github/workflows/sonarqube.yaml index 1b0d952..1c3bbee 100644 --- a/.github/workflows/sonarqube.yaml +++ b/.github/workflows/sonarqube.yaml @@ -12,7 +12,7 @@ jobs: sonarqube: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v4 with: # Disabling shallow clone is recommended for improving relevancy of reporting fetch-depth: 0