File 6811-gh-Pin-checkout-and-app-token-to-specific-versions.patch of Package erlang
From c6b97c2abb51adfbf3658c78a07001ab99f1fcc4 Mon Sep 17 00:00:00 2001
From: Lukas Larsson <lukas@erlang.org>
Date: Mon, 9 Oct 2023 16:16:22 +0200
Subject: [PATCH] gh: Pin checkout and app-token to specific versions
---
.github/workflows/actions-updater.yaml | 4 ++--
1 file changed, 2 insertions(+), 2 deletions(-)
diff --git a/.github/workflows/actions-updater.yaml b/.github/workflows/actions-updater.yaml
index 00bb33502a..7dd777182b 100644
--- a/.github/workflows/actions-updater.yaml
+++ b/.github/workflows/actions-updater.yaml
@@ -15,12 +15,12 @@ jobs:
- name: Generate token
id: generate_token
- uses: actions/create-github-app-token@v1
+ uses: actions/create-github-app-token@v1.5.0
with:
app_id: ${{ secrets.APP_ID }}
private_key: ${{ secrets.APP_PEM }}
- - uses: actions/checkout@v4
+ - uses: actions/checkout@v4.1.0
with:
token: ${{ steps.generate_token.outputs.token }}
- name: Run GitHub Actions Version Updater
--
2.35.3