diff --git a/.github/workflows/bench.yml b/.github/workflows/bench.yml index e7f12a1..5e643a4 100644 --- a/.github/workflows/bench.yml +++ b/.github/workflows/bench.yml @@ -95,7 +95,7 @@ jobs: # sample this one runner, so both read the same resolved port. - name: resolve redis port run: echo "REDIS_URL=redis://localhost:${{ job.services.redis.ports['6379'] }}/0" >> "$GITHUB_ENV" - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 with: ruby-version: "4.0" bundler-cache: true diff --git a/.github/workflows/deploy-demo.yml b/.github/workflows/deploy-demo.yml index 77b2d00..1bc7e31 100644 --- a/.github/workflows/deploy-demo.yml +++ b/.github/workflows/deploy-demo.yml @@ -159,7 +159,7 @@ jobs: echo "short=sha-$(printf '%.7s' "$sha")" } >> "$GITHUB_OUTPUT" - - uses: docker/setup-buildx-action@37fe631027851001ddb9b187196cc803df7f5f0e # v4.3.0 + - uses: docker/setup-buildx-action@f87e5991a6d7451dcb8d9637bfbc97413f497069 # v4.4.1 - uses: docker/login-action@dbcb813823bdd20940b903addbd779551569679f # v4.6.0 with: registry: registry.digitalocean.com @@ -173,7 +173,7 @@ jobs: # the run (a bot merging a release PR is an actor like any other). username: ${{ github.repository_owner }} password: ${{ secrets.GITHUB_TOKEN }} - - uses: docker/build-push-action@53b7df96c91f9c12dcc8a07bcb9ccacbed38856a # v7.3.0 + - uses: docker/build-push-action@c3c9e263c25d99ce0380d002d59b67737d91b0dc # v7.4.0 with: context: . file: Dockerfile diff --git a/.github/workflows/ecosystem.yml b/.github/workflows/ecosystem.yml index d2d3d4c..40479aa 100644 --- a/.github/workflows/ecosystem.yml +++ b/.github/workflows/ecosystem.yml @@ -78,7 +78,7 @@ jobs: # the `job` context is unavailable there. - name: resolve redis port run: echo "ECOSYSTEM_REDIS_URL=redis://localhost:${{ job.services.redis.ports['6379'] }}/15" >> "$GITHUB_ENV" - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 with: # NOT the newest Ruby, deliberately. This job's subject is third-party # gems at pinned upstream SHAs, so it has to run a Ruby *they* support: diff --git a/.github/workflows/pages.yml b/.github/workflows/pages.yml index 6bf4843..e9b7a96 100644 --- a/.github/workflows/pages.yml +++ b/.github/workflows/pages.yml @@ -42,7 +42,7 @@ jobs: - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 with: # Pinned below the newest Ruby on purpose: this job builds docs (YARD) # and makes no statement about which Ruby Wurk supports, so there is diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index 79fc142..9157052 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -55,7 +55,7 @@ jobs: - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 with: ruby-version: "3.4" # No bundle needed: version.rb and release_helpers.rb are dependency-free. @@ -107,7 +107,7 @@ jobs: - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 with: # Pinned below the newest Ruby on purpose: the built .gem is pure Ruby # and identical whichever interpreter packs it, so this job carries the diff --git a/.github/workflows/test.yml b/.github/workflows/test.yml index 4d12bab..52c1efa 100644 --- a/.github/workflows/test.yml +++ b/.github/workflows/test.yml @@ -139,7 +139,7 @@ jobs: - name: resolve redis port if: env.RUN == 'true' run: echo "REDIS_URL=redis://localhost:${{ job.services.redis.ports['6379'] }}/0" >> "$GITHUB_ENV" - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 if: env.RUN == 'true' with: ruby-version: ${{ env.RUBY_VERSION }} @@ -258,7 +258,7 @@ jobs: # STEP, not job-level `env:` — see the `test` job above. - name: resolve redis port run: echo "REDIS_URL=redis://localhost:${{ job.services.redis.ports['6379'] }}/0" >> "$GITHUB_ENV" - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 with: ruby-version: "4.0" bundler-cache: true @@ -363,7 +363,7 @@ jobs: - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false - - uses: ruby/setup-ruby@bec3f19a76460dbe12f60def7d1a77585f07516c # v1 + - uses: ruby/setup-ruby@e8944e80fb94b20106697132f8c20c665fab29e9 # v1 with: ruby-version: "4.0" bundler-cache: true