From 74cd63c6b0bbe29eaeaf375d0d05ad82fe99b71c Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Thu, 28 May 2026 20:11:34 +0000 Subject: [PATCH] chore(deps): update digest dependencies --- .github/workflows/nightly_scans.yml | 2 +- .github/workflows/security_codeql.yml | 4 ++-- .github/workflows/security_semgrep.yml | 2 +- .github/workflows/security_snyk.yml | 16 ++++++++-------- 4 files changed, 12 insertions(+), 12 deletions(-) diff --git a/.github/workflows/nightly_scans.yml b/.github/workflows/nightly_scans.yml index 855abdb399..fda1996b9e 100644 --- a/.github/workflows/nightly_scans.yml +++ b/.github/workflows/nightly_scans.yml @@ -42,6 +42,6 @@ jobs: python3 ${{ env.SCRIPT_RELATIVE_PATH }} ./report_json.json ./report.sarif - name: Upload SARIF file - uses: github/codeql-action/upload-sarif@9e0d7b8d25671d64c341c19c0152d693099fb5ba # v4 + uses: github/codeql-action/upload-sarif@7211b7c8077ea37d8641b6271f6a365a22a5fbfa # v4 with: sarif_file: ./report.sarif diff --git a/.github/workflows/security_codeql.yml b/.github/workflows/security_codeql.yml index ec4b685852..26b46b6b34 100644 --- a/.github/workflows/security_codeql.yml +++ b/.github/workflows/security_codeql.yml @@ -22,7 +22,7 @@ jobs: # Initializes the CodeQL tools for scanning. - name: Initialize CodeQL - uses: github/codeql-action/init@9e0d7b8d25671d64c341c19c0152d693099fb5ba # v4 + uses: github/codeql-action/init@7211b7c8077ea37d8641b6271f6a365a22a5fbfa # v4 with: languages: javascript, python # If you wish to specify custom queries, you can do so here or in a config file. @@ -33,4 +33,4 @@ jobs: queries: +security-extended - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@9e0d7b8d25671d64c341c19c0152d693099fb5ba # v4 + uses: github/codeql-action/analyze@7211b7c8077ea37d8641b6271f6a365a22a5fbfa # v4 diff --git a/.github/workflows/security_semgrep.yml b/.github/workflows/security_semgrep.yml index cc1cb647d4..a3e283a7e1 100644 --- a/.github/workflows/security_semgrep.yml +++ b/.github/workflows/security_semgrep.yml @@ -25,7 +25,7 @@ jobs: SEMGREP_RULES: "p/default" - name: Upload SARIF file for GitHub Advanced Security Dashboard - uses: github/codeql-action/upload-sarif@9e0d7b8d25671d64c341c19c0152d693099fb5ba # v4 + uses: github/codeql-action/upload-sarif@7211b7c8077ea37d8641b6271f6a365a22a5fbfa # v4 with: sarif_file: ${{ env.SEMGREP_TO_UPLOAD }} if: always() diff --git a/.github/workflows/security_snyk.yml b/.github/workflows/security_snyk.yml index f78661296b..f85787b570 100644 --- a/.github/workflows/security_snyk.yml +++ b/.github/workflows/security_snyk.yml @@ -36,7 +36,7 @@ jobs: - name: Run Snyk test id: snyk_test - uses: snyk/actions/node@9cf6ca713d71123d2d229cc3d7f145b96ea3c518 # master + uses: snyk/actions/node@8e119fbb6c251787721d34ba683ed48eba792766 # master continue-on-error: true env: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} @@ -51,7 +51,7 @@ jobs: - name: Run Snyk monitor id: snyk_monitor - uses: snyk/actions/node@9cf6ca713d71123d2d229cc3d7f145b96ea3c518 # master + uses: snyk/actions/node@8e119fbb6c251787721d34ba683ed48eba792766 # master continue-on-error: true env: SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }} @@ -65,7 +65,7 @@ jobs: - name: Upload SARIF if: always() && hashFiles('snyk-frontend.sarif') != '' - uses: github/codeql-action/upload-sarif@68bde559dea0fdcac2102bfdf6230c5f70eb485e # v4 + uses: github/codeql-action/upload-sarif@7211b7c8077ea37d8641b6271f6a365a22a5fbfa # v4 with: sarif_file: snyk-frontend.sarif category: snyk-frontend @@ -91,7 +91,7 @@ jobs: fi - name: Setup Snyk CLI - uses: snyk/actions/setup@9cf6ca713d71123d2d229cc3d7f145b96ea3c518 # master + uses: snyk/actions/setup@8e119fbb6c251787721d34ba683ed48eba792766 # master - uses: ./.github/actions/setup-python @@ -121,7 +121,7 @@ jobs: - name: Upload SARIF if: always() && hashFiles('snyk-backend-api.sarif') != '' - uses: github/codeql-action/upload-sarif@68bde559dea0fdcac2102bfdf6230c5f70eb485e # v4 + uses: github/codeql-action/upload-sarif@7211b7c8077ea37d8641b6271f6a365a22a5fbfa # v4 with: sarif_file: snyk-backend-api.sarif category: snyk-backend-api @@ -147,10 +147,10 @@ jobs: fi - name: Setup Snyk CLI - uses: snyk/actions/setup@9cf6ca713d71123d2d229cc3d7f145b96ea3c518 # master + uses: snyk/actions/setup@8e119fbb6c251787721d34ba683ed48eba792766 # master - name: Setup Python - uses: actions/setup-python@28f2168f4d98ee0445e3c6321f6e6616c83dd5ec # v4.3.0 + uses: actions/setup-python@13ae5bb136fac2878aff31522b9efb785519f984 # v4.3.0 with: python-version: '3.14' @@ -187,7 +187,7 @@ jobs: - name: Upload SARIF if: always() && hashFiles('snyk-backend-data-tools.sarif') != '' - uses: github/codeql-action/upload-sarif@68bde559dea0fdcac2102bfdf6230c5f70eb485e # v4 + uses: github/codeql-action/upload-sarif@7211b7c8077ea37d8641b6271f6a365a22a5fbfa # v4 with: sarif_file: snyk-backend-data-tools.sarif category: snyk-backend-data-tools