Skip to content

Pin actions - #17

Merged
raviqqe merged 1 commit into
mainfrom
chore/pin-action
Jun 19, 2026
Merged

Pin actions#17
raviqqe merged 1 commit into
mainfrom
chore/pin-action

Conversation

@raviqqe

@raviqqe raviqqe commented Jun 19, 2026

Copy link
Copy Markdown
Owner

No description provided.

Copilot AI review requested due to automatic review settings June 19, 2026 04:28
@raviqqe
raviqqe enabled auto-merge (squash) June 19, 2026 04:28

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Pins GitHub Actions used in this repository’s CI workflows to immutable commit SHAs to improve supply-chain security and build reproducibility.

Changes:

  • Pinned actions/checkout and Rust caching actions in the test workflow to specific commit SHAs.
  • Pinned actions/checkout, raviqqe/cargo-cache, and rust-lang/crates-io-auth-action in the release workflow to specific commit SHAs.
  • Pinned actions/checkout, swatinem/rust-cache, streetsidesoftware/cspell-action, and raviqqe/markdown-link-check in the lint workflow to specific commit SHAs.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

File Description
.github/workflows/test.yaml Pins checkout + rust-cache actions to commit SHAs for build/test jobs.
.github/workflows/release.yaml Pins checkout + cargo-cache + crates.io auth actions to commit SHAs for releases.
.github/workflows/lint.yaml Pins checkout + rust-cache + cspell + markdown-link-check actions to commit SHAs for linting jobs.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@raviqqe
raviqqe merged commit 98fd3d0 into main Jun 19, 2026
9 checks passed
@raviqqe
raviqqe deleted the chore/pin-action branch June 19, 2026 04:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants