Skip to content

Conversation

@fzipi
Copy link
Member

@fzipi fzipi commented Sep 5, 2025

what

  • update and upgrade gha pinned versions

why

  • keep actions up to date and secure

Signed-off-by: Felipe Zipitria <felipe.zipitria@owasp.org>
@fzipi fzipi requested a review from theseion September 5, 2025 21:44
@theseion
Copy link
Contributor

theseion commented Sep 6, 2025

I don't understand why you're using ratchet comments. Pinning should already be covered by renovate by default. The only thing ratchet adds are version constraints, AFAICT.

@fzipi
Copy link
Member Author

fzipi commented Sep 6, 2025

I was meant to remove them, no worries. Also, somehow no version was pinned here 🤔

Signed-off-by: Felipe Zipitria <felipe.zipitria@owasp.org>
Co-authored-by: Max Leske <250711+theseion@users.noreply.github.com>
@fzipi fzipi requested a review from theseion September 9, 2025 13:12
@theseion theseion merged commit 8132a96 into coreruleset:main Sep 9, 2025
5 checks passed
@fzipi fzipi deleted the ci/update-pins branch September 10, 2025 12:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants