diff --git a/.github/workflows/@release.yaml b/.github/workflows/@release.yaml index 3add5c5cf..eafd0e8e4 100644 --- a/.github/workflows/@release.yaml +++ b/.github/workflows/@release.yaml @@ -18,7 +18,7 @@ jobs: # repo-token: ${{ secrets.GITHUB_TOKEN }} - name: Checkout repository - uses: actions/checkout@v3 + uses: actions/checkout@v4 with: token: ${{ secrets.SOCIALGROOVYBOT_BOTO_PAT }} fetch-depth: "0" # Pull all commits, required for lerna version diff --git a/.github/workflows/workflow.build.yaml b/.github/workflows/workflow.build.yaml index cfa794566..050466609 100644 --- a/.github/workflows/workflow.build.yaml +++ b/.github/workflows/workflow.build.yaml @@ -19,7 +19,7 @@ jobs: digest: "${{ steps.docker_push.outputs.digest }}" runs-on: ubuntu-latest steps: - - uses: "actions/checkout@v3" + - uses: "actions/checkout@v4" - id: docker_meta uses: "crazy-max/ghaction-docker-meta@v4" with: @@ -63,7 +63,7 @@ jobs: name: Lint runs-on: ubuntu-latest steps: - - uses: "actions/checkout@v3" + - uses: "actions/checkout@v4" - uses: "docker://ghcr.io/hadolint/hadolint:2.4.0@sha256:ed22c9de9b884383094edb8930696a256c4450335945c68153d8fc8fbb27bf03" with: args: hadolint ./${{ inputs.name }}/Dockerfile @@ -73,7 +73,7 @@ jobs: - Build runs-on: ubuntu-latest steps: - - uses: "actions/checkout@v3" + - uses: "actions/checkout@v4" - run: "docker pull ghcr.io/socialgouv/docker/${{ inputs.name }}:sha-${{ github.sha }}" - name: Run Trivy vulnerability scanner uses: "aquasecurity/trivy-action@dba83feec810c70bacbc4bead308ae1e466c572b" @@ -97,7 +97,7 @@ jobs: - Build runs-on: ubuntu-latest steps: - - uses: "actions/checkout@v3" + - uses: "actions/checkout@v4" - run: yarn --immutable # - run: yarn workspace ${{ inputs.name }} build # env: