diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 6ebc6ba..ad3166e 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -34,7 +34,7 @@ jobs: pkg-config - name: Initialize CodeQL - uses: github/codeql-action/init@a6fd1787519fd23e68309fad43738e41a6ff2a9d + uses: github/codeql-action/init@87557b9c84dde89fdd9b10e88954ac2f4248e463 with: languages: c-cpp build-mode: manual @@ -47,4 +47,4 @@ jobs: make -j"$(nproc)" - name: Perform CodeQL analysis - uses: github/codeql-action/analyze@a6fd1787519fd23e68309fad43738e41a6ff2a9d + uses: github/codeql-action/analyze@87557b9c84dde89fdd9b10e88954ac2f4248e463 diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 3346531..5ec62a1 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -39,6 +39,6 @@ jobs: retention-days: 14 - name: Upload Scorecard to code scanning - uses: github/codeql-action/upload-sarif@a6fd1787519fd23e68309fad43738e41a6ff2a9d + uses: github/codeql-action/upload-sarif@87557b9c84dde89fdd9b10e88954ac2f4248e463 with: sarif_file: results.sarif