ci: pin all GitHub Actions to SHA (security compliance) #3
security.yml
on: push
Matrix: Cargo Deny
Dependency Review
0s
Security Summary
4s
Annotations
9 errors
|
Secret Scanning
The actions actions/checkout@v4 and gitleaks/gitleaks-action@v2 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
|
|
Cargo Audit
The actions actions/checkout@v4 and dtolnay/rust-toolchain@stable are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
|
|
Cargo Deny (bans)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
|
|
Cargo Deny (licenses)
The strategy configuration was canceled because "cargo-deny.bans" failed
|
|
Cargo Deny (licenses)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
|
|
Cargo Deny (sources)
The strategy configuration was canceled because "cargo-deny.bans" failed
|
|
Cargo Deny (sources)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
|
|
Cargo Deny (advisories)
The strategy configuration was canceled because "cargo-deny.bans" failed
|
|
Cargo Deny (advisories)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
|