Skip to content

ci: pin all GitHub Actions to SHA (security compliance) #3

ci: pin all GitHub Actions to SHA (security compliance)

ci: pin all GitHub Actions to SHA (security compliance) #3

Triggered via push January 3, 2026 15:39
Status Failure
Total duration 12s
Artifacts

security.yml

on: push
Matrix: Cargo Deny
Cargo Audit
2s
Cargo Audit
Secret Scanning
2s
Secret Scanning
Dependency Review
0s
Dependency Review
Security Summary
4s
Security Summary
Fit to window
Zoom out
Zoom in

Annotations

9 errors
Secret Scanning
The actions actions/checkout@v4 and gitleaks/gitleaks-action@v2 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
Cargo Audit
The actions actions/checkout@v4 and dtolnay/rust-toolchain@stable are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
Cargo Deny (bans)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
Cargo Deny (licenses)
The strategy configuration was canceled because "cargo-deny.bans" failed
Cargo Deny (licenses)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
Cargo Deny (sources)
The strategy configuration was canceled because "cargo-deny.bans" failed
Cargo Deny (sources)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.
Cargo Deny (advisories)
The strategy configuration was canceled because "cargo-deny.bans" failed
Cargo Deny (advisories)
The actions actions/checkout@v4 and embarkstudios/cargo-deny-action@v1 are not allowed in reasonkit/reasonkit-mem because all actions must be pinned to a full-length commit SHA.