diff --git a/.github/workflows/_build_publish.yaml b/.github/workflows/_build_publish.yaml index f7f2a0cad0bd..99f212ecd75a 100644 --- a/.github/workflows/_build_publish.yaml +++ b/.github/workflows/_build_publish.yaml @@ -128,7 +128,7 @@ jobs: make test/container-structure/${{ matrix.image }} - name: scan amd64 image id: scan_image-amd64 - uses: Kong/public-shared-actions/security-actions/scan-docker-image@0ff22c9835d745aefc41a99de6d526dc9e984105 # v2.2.0 + uses: Kong/public-shared-actions/security-actions/scan-docker-image@23929cfda574afc77b018c51794454b6dc99ca57 # v2.2.1 with: asset_prefix: image_${{ matrix.image }}-amd64 image: ./build/docker/${{ matrix.image }}-amd64.tar @@ -136,7 +136,7 @@ jobs: - name: scan arm64 image id: scan_image-arm64 if: ${{ fromJSON(inputs.FULL_MATRIX) }} - uses: Kong/public-shared-actions/security-actions/scan-docker-image@0ff22c9835d745aefc41a99de6d526dc9e984105 # v2.2.0 + uses: Kong/public-shared-actions/security-actions/scan-docker-image@23929cfda574afc77b018c51794454b6dc99ca57 # v2.2.1 with: asset_prefix: image_${{ matrix.image }}-arm64 image: ./build/docker/${{ matrix.image }}-arm64.tar @@ -184,7 +184,7 @@ jobs: - name: sign image if: ${{ fromJSON(inputs.ALLOW_PUSH) }} id: sign - uses: Kong/public-shared-actions/security-actions/sign-docker-image@0ff22c9835d745aefc41a99de6d526dc9e984105 # v2.2.0 + uses: Kong/public-shared-actions/security-actions/sign-docker-image@23929cfda574afc77b018c51794454b6dc99ca57 # v2.2.1 with: image_digest: ${{ steps.image_digest.outputs.digest }} tags: ${{ steps.image_meta.outputs.image }} diff --git a/.github/workflows/build-test-distribute.yaml b/.github/workflows/build-test-distribute.yaml index b389222e7941..d2e6d8cdf3c7 100644 --- a/.github/workflows/build-test-distribute.yaml +++ b/.github/workflows/build-test-distribute.yaml @@ -69,7 +69,7 @@ jobs: - run: | make check - id: sca-project - uses: Kong/public-shared-actions/security-actions/sca@0ff22c9835d745aefc41a99de6d526dc9e984105 # v2.2.0 + uses: Kong/public-shared-actions/security-actions/sca@23929cfda574afc77b018c51794454b6dc99ca57 # v2.2.1 with: dir: . config: .syft.yaml