Skip to content

[SECENG-364] Pin GitHub Actions to commit SHAs#16

Merged
Stephanie Ginovker (sginovker) merged 1 commit intomasterfrom
security/pin-actions-to-sha
Apr 23, 2026
Merged

[SECENG-364] Pin GitHub Actions to commit SHAs#16
Stephanie Ginovker (sginovker) merged 1 commit intomasterfrom
security/pin-actions-to-sha

Conversation

@sginovker
Copy link
Copy Markdown
Contributor

@sginovker Stephanie Ginovker (sginovker) commented Apr 21, 2026

Ticket

SECENG-364

Summary

Pin all GitHub Actions to commit SHAs for supply chain security. Branch-pinned actions (@main / @master) are upgraded to the repo's latest release tag.

Pinned Actions

@sginovker Stephanie Ginovker (sginovker) merged commit 09cbf8b into master Apr 23, 2026
1 check passed
@sginovker Stephanie Ginovker (sginovker) deleted the security/pin-actions-to-sha branch May 7, 2026 17:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants