Skip to content

fix(cd): pinning action version for security#17075

Open
ChronosSF wants to merge 1 commit intomasterfrom
sstoychev/pinning-repo-dispatch
Open

fix(cd): pinning action version for security#17075
ChronosSF wants to merge 1 commit intomasterfrom
sstoychev/pinning-repo-dispatch

Conversation

@ChronosSF
Copy link
Member

Closes #

Additional information (check all that apply):

  • Bug fix
  • New functionality
  • Documentation
  • Demos
  • CI/CD

Checklist:

  • All relevant tags have been applied to this PR
  • This PR includes unit tests covering all the new code (test guidelines)
  • This PR includes API docs for newly added methods/properties (api docs guidelines)
  • This PR includes feature/README.MD updates for the feature docs
  • This PR includes general feature table updates in the root README.MD
  • This PR includes CHANGELOG.MD updates for newly added functionality
  • This PR contains breaking changes
  • This PR includes ng update migrations for the breaking changes (migrations guidelines)
  • This PR includes behavioral changes and the feature specification has been updated with them

Copy link
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Pins a GitHub Action reference in the licensed release trigger workflow to a commit SHA to reduce supply-chain risk in CI/CD.

Changes:

  • Replaces peter-evans/repository-dispatch@v3 with a specific commit SHA in the licensed release dispatch workflow.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants