Skip to content

PSA-34901 Pin third party actions to commit SHA#1

Open
dg-blackjack-bot[bot] wants to merge 1 commit intomainfrom
feature/blackjack/PSA-34901-pin-actions
Open

PSA-34901 Pin third party actions to commit SHA#1
dg-blackjack-bot[bot] wants to merge 1 commit intomainfrom
feature/blackjack/PSA-34901-pin-actions

Conversation

@dg-blackjack-bot
Copy link
Copy Markdown

@dg-blackjack-bot dg-blackjack-bot Bot commented Mar 31, 2026

Important

To avoid supply chain attacks, third party actions should always be pinned to a full SHA.
See here for more information

https://jiradg.atlassian.net/browse/PSA-34901

@dg-blackjack-bot dg-blackjack-bot Bot added the automated This is an automated change made with a tool label Mar 31, 2026
@dg-blackjack-bot dg-blackjack-bot Bot enabled auto-merge (squash) March 31, 2026 12:18
@dg-pull-request-jira-linker dg-pull-request-jira-linker Bot changed the title Pin third party actions to commit SHA PSA-34901 Pin third party actions to commit SHA Mar 31, 2026
@dg-blackjack-bot dg-blackjack-bot Bot force-pushed the feature/blackjack/PSA-34901-pin-actions branch from 83e8f43 to 4d7734e Compare April 4, 2026 10:21
@dg-blackjack-bot dg-blackjack-bot Bot force-pushed the feature/blackjack/PSA-34901-pin-actions branch from 4d7734e to 904f7cf Compare April 11, 2026 10:22
@dg-blackjack-bot dg-blackjack-bot Bot force-pushed the feature/blackjack/PSA-34901-pin-actions branch from 904f7cf to 5afacf7 Compare April 18, 2026 10:28
Copy link
Copy Markdown

@dg-approval-enforcer dg-approval-enforcer Bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This PR was opened by a bot and requires 2 approvals before it can be merged.

@dg-blackjack-bot dg-blackjack-bot Bot force-pushed the feature/blackjack/PSA-34901-pin-actions branch from 5afacf7 to 67de826 Compare April 25, 2026 10:28
@dg-blackjack-bot dg-blackjack-bot Bot force-pushed the feature/blackjack/PSA-34901-pin-actions branch from 67de826 to e3504f3 Compare May 2, 2026 10:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

automated This is an automated change made with a tool

Development

Successfully merging this pull request may close these issues.

0 participants