Skip to content

ci: pin govulncheck to v1.3.0#38

Merged
adel-pplx merged 1 commit into
mainfrom
ci-pin-govulncheck
May 28, 2026
Merged

ci: pin govulncheck to v1.3.0#38
adel-pplx merged 1 commit into
mainfrom
ci-pin-govulncheck

Conversation

@adel-pplx
Copy link
Copy Markdown
Collaborator

Pin govulncheck install to v1.3.0 instead of @latest, matching the SHA-pinned style used for the other actions in this workflow.

Fixes #18

Avoid pulling an unpinned upstream tag in CI. Matches the
SHA-pinned style used for the other actions in this workflow.

Fixes #18
@adel-pplx adel-pplx requested a review from kyle-pplx May 28, 2026 16:36
@adel-pplx adel-pplx merged commit 1e9306e into main May 28, 2026
3 checks passed
anonymousAAK added a commit to anonymousAAK/bumblebee that referenced this pull request May 29, 2026
@adel-pplx adel-pplx deleted the ci-pin-govulncheck branch May 29, 2026 18:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[Security] Pin govulncheck version in ci.yml to prevent supply chain risks

2 participants