From 1f38a73af6709c5ca1eecc056bb4bd35ca221afa Mon Sep 17 00:00:00 2001 From: Gareth Jones Date: Sun, 3 Sep 2023 08:47:22 +1200 Subject: [PATCH 1/4] ci: update `actions/checkout` to v3 --- .github/workflows/dummy.yml | 2 +- .github/workflows/generator.yml | 2 +- .github/workflows/jest.yml | 2 +- .github/workflows/js-lint.yml | 2 +- .github/workflows/rubocop.yml | 2 +- .github/workflows/ruby-backward-compatibility.yml | 2 +- .github/workflows/ruby.yml | 2 +- 7 files changed, 7 insertions(+), 7 deletions(-) diff --git a/.github/workflows/dummy.yml b/.github/workflows/dummy.yml index 8412e6d1f..d1317f72e 100644 --- a/.github/workflows/dummy.yml +++ b/.github/workflows/dummy.yml @@ -7,7 +7,7 @@ jobs: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3 - uses: ruby/setup-ruby@v1 with: ruby-version: '3.1.2' diff --git a/.github/workflows/generator.yml b/.github/workflows/generator.yml index d8d6b91dc..addfaa224 100644 --- a/.github/workflows/generator.yml +++ b/.github/workflows/generator.yml @@ -28,7 +28,7 @@ jobs: BUNDLE_GEMFILE: ${{ matrix.gemfile }} steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3 - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} diff --git a/.github/workflows/jest.yml b/.github/workflows/jest.yml index d5617ab24..d5c2f3e45 100644 --- a/.github/workflows/jest.yml +++ b/.github/workflows/jest.yml @@ -13,7 +13,7 @@ jobs: runs-on: ${{ matrix.os }} steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3 - name: Use Node.js ${{ matrix.node }} uses: actions/setup-node@v2 with: diff --git a/.github/workflows/js-lint.yml b/.github/workflows/js-lint.yml index cd330e8bc..a5738dc92 100644 --- a/.github/workflows/js-lint.yml +++ b/.github/workflows/js-lint.yml @@ -13,7 +13,7 @@ jobs: runs-on: ${{ matrix.os }} steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3 - name: Use Node.js ${{ matrix.node }} uses: actions/setup-node@v2 with: diff --git a/.github/workflows/rubocop.yml b/.github/workflows/rubocop.yml index 022724b3f..d56bbd43b 100644 --- a/.github/workflows/rubocop.yml +++ b/.github/workflows/rubocop.yml @@ -12,7 +12,7 @@ jobs: ruby: ['2.7', '3.0'] steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3 - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} diff --git a/.github/workflows/ruby-backward-compatibility.yml b/.github/workflows/ruby-backward-compatibility.yml index 871a9df13..c169ab275 100644 --- a/.github/workflows/ruby-backward-compatibility.yml +++ b/.github/workflows/ruby-backward-compatibility.yml @@ -29,7 +29,7 @@ jobs: BUNDLE_GEMFILE: ${{ matrix.gemfile }} steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3 - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} diff --git a/.github/workflows/ruby.yml b/.github/workflows/ruby.yml index 39842f098..9b7ab79e0 100644 --- a/.github/workflows/ruby.yml +++ b/.github/workflows/ruby.yml @@ -29,7 +29,7 @@ jobs: BUNDLE_GEMFILE: ${{ matrix.gemfile }} steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3 - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} From 7f0e5e83d870835676a0bc9c6e19b2a503b0ccbf Mon Sep 17 00:00:00 2001 From: Gareth Jones Date: Sun, 3 Sep 2023 08:48:55 +1200 Subject: [PATCH 2/4] ci: update `actions/setup-node` to v3 --- .github/workflows/jest.yml | 2 +- .github/workflows/js-lint.yml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/jest.yml b/.github/workflows/jest.yml index d5c2f3e45..64863bfeb 100644 --- a/.github/workflows/jest.yml +++ b/.github/workflows/jest.yml @@ -15,7 +15,7 @@ jobs: steps: - uses: actions/checkout@v3 - name: Use Node.js ${{ matrix.node }} - uses: actions/setup-node@v2 + uses: actions/setup-node@v3 with: node-version: ${{ matrix.node }} cache: yarn diff --git a/.github/workflows/js-lint.yml b/.github/workflows/js-lint.yml index a5738dc92..15a6d09bb 100644 --- a/.github/workflows/js-lint.yml +++ b/.github/workflows/js-lint.yml @@ -15,7 +15,7 @@ jobs: steps: - uses: actions/checkout@v3 - name: Use Node.js ${{ matrix.node }} - uses: actions/setup-node@v2 + uses: actions/setup-node@v3 with: node-version: ${{ matrix.node }} cache: yarn From 868cf05101454d21b98d547f3437286e67bff16e Mon Sep 17 00:00:00 2001 From: Gareth Jones Date: Sun, 3 Sep 2023 08:52:42 +1200 Subject: [PATCH 3/4] ci: disable persisted git credentials for improved security --- .github/workflows/dummy.yml | 2 ++ .github/workflows/generator.yml | 2 ++ .github/workflows/jest.yml | 2 ++ .github/workflows/js-lint.yml | 2 ++ .github/workflows/rubocop.yml | 2 ++ .github/workflows/ruby-backward-compatibility.yml | 2 ++ .github/workflows/ruby.yml | 2 ++ 7 files changed, 14 insertions(+) diff --git a/.github/workflows/dummy.yml b/.github/workflows/dummy.yml index d1317f72e..b5f276dba 100644 --- a/.github/workflows/dummy.yml +++ b/.github/workflows/dummy.yml @@ -8,6 +8,8 @@ jobs: steps: - uses: actions/checkout@v3 + with: + persist-credentials: false - uses: ruby/setup-ruby@v1 with: ruby-version: '3.1.2' diff --git a/.github/workflows/generator.yml b/.github/workflows/generator.yml index addfaa224..4dbaa9f4a 100644 --- a/.github/workflows/generator.yml +++ b/.github/workflows/generator.yml @@ -29,6 +29,8 @@ jobs: steps: - uses: actions/checkout@v3 + with: + persist-credentials: false - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} diff --git a/.github/workflows/jest.yml b/.github/workflows/jest.yml index 64863bfeb..002c336d6 100644 --- a/.github/workflows/jest.yml +++ b/.github/workflows/jest.yml @@ -14,6 +14,8 @@ jobs: steps: - uses: actions/checkout@v3 + with: + persist-credentials: false - name: Use Node.js ${{ matrix.node }} uses: actions/setup-node@v3 with: diff --git a/.github/workflows/js-lint.yml b/.github/workflows/js-lint.yml index 15a6d09bb..955339495 100644 --- a/.github/workflows/js-lint.yml +++ b/.github/workflows/js-lint.yml @@ -14,6 +14,8 @@ jobs: steps: - uses: actions/checkout@v3 + with: + persist-credentials: false - name: Use Node.js ${{ matrix.node }} uses: actions/setup-node@v3 with: diff --git a/.github/workflows/rubocop.yml b/.github/workflows/rubocop.yml index d56bbd43b..550dcfc2c 100644 --- a/.github/workflows/rubocop.yml +++ b/.github/workflows/rubocop.yml @@ -13,6 +13,8 @@ jobs: steps: - uses: actions/checkout@v3 + with: + persist-credentials: false - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} diff --git a/.github/workflows/ruby-backward-compatibility.yml b/.github/workflows/ruby-backward-compatibility.yml index c169ab275..9f4c936dd 100644 --- a/.github/workflows/ruby-backward-compatibility.yml +++ b/.github/workflows/ruby-backward-compatibility.yml @@ -30,6 +30,8 @@ jobs: steps: - uses: actions/checkout@v3 + with: + persist-credentials: false - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} diff --git a/.github/workflows/ruby.yml b/.github/workflows/ruby.yml index 9b7ab79e0..5b0402b65 100644 --- a/.github/workflows/ruby.yml +++ b/.github/workflows/ruby.yml @@ -30,6 +30,8 @@ jobs: steps: - uses: actions/checkout@v3 + with: + persist-credentials: false - uses: ruby/setup-ruby@v1 with: ruby-version: ${{ matrix.ruby }} From ec1f334406b887be9f33b67ae56685329c9cfb02 Mon Sep 17 00:00:00 2001 From: Gareth Jones Date: Tue, 5 Sep 2023 07:51:52 +1200 Subject: [PATCH 4/4] ci: update `actions/checkout` to v4 --- .github/workflows/dummy.yml | 2 +- .github/workflows/generator.yml | 2 +- .github/workflows/jest.yml | 2 +- .github/workflows/js-lint.yml | 2 +- .github/workflows/rubocop.yml | 2 +- .github/workflows/ruby-backward-compatibility.yml | 2 +- .github/workflows/ruby.yml | 2 +- 7 files changed, 7 insertions(+), 7 deletions(-) diff --git a/.github/workflows/dummy.yml b/.github/workflows/dummy.yml index b5f276dba..7f09ec412 100644 --- a/.github/workflows/dummy.yml +++ b/.github/workflows/dummy.yml @@ -7,7 +7,7 @@ jobs: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: persist-credentials: false - uses: ruby/setup-ruby@v1 diff --git a/.github/workflows/generator.yml b/.github/workflows/generator.yml index 4dbaa9f4a..b460a43d6 100644 --- a/.github/workflows/generator.yml +++ b/.github/workflows/generator.yml @@ -28,7 +28,7 @@ jobs: BUNDLE_GEMFILE: ${{ matrix.gemfile }} steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: persist-credentials: false - uses: ruby/setup-ruby@v1 diff --git a/.github/workflows/jest.yml b/.github/workflows/jest.yml index 002c336d6..62f340886 100644 --- a/.github/workflows/jest.yml +++ b/.github/workflows/jest.yml @@ -13,7 +13,7 @@ jobs: runs-on: ${{ matrix.os }} steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: persist-credentials: false - name: Use Node.js ${{ matrix.node }} diff --git a/.github/workflows/js-lint.yml b/.github/workflows/js-lint.yml index 955339495..bfd8edf93 100644 --- a/.github/workflows/js-lint.yml +++ b/.github/workflows/js-lint.yml @@ -13,7 +13,7 @@ jobs: runs-on: ${{ matrix.os }} steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: persist-credentials: false - name: Use Node.js ${{ matrix.node }} diff --git a/.github/workflows/rubocop.yml b/.github/workflows/rubocop.yml index 550dcfc2c..9f69ea4fd 100644 --- a/.github/workflows/rubocop.yml +++ b/.github/workflows/rubocop.yml @@ -12,7 +12,7 @@ jobs: ruby: ['2.7', '3.0'] steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: persist-credentials: false - uses: ruby/setup-ruby@v1 diff --git a/.github/workflows/ruby-backward-compatibility.yml b/.github/workflows/ruby-backward-compatibility.yml index 9f4c936dd..2a40fb730 100644 --- a/.github/workflows/ruby-backward-compatibility.yml +++ b/.github/workflows/ruby-backward-compatibility.yml @@ -29,7 +29,7 @@ jobs: BUNDLE_GEMFILE: ${{ matrix.gemfile }} steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: persist-credentials: false - uses: ruby/setup-ruby@v1 diff --git a/.github/workflows/ruby.yml b/.github/workflows/ruby.yml index 5b0402b65..b2624453e 100644 --- a/.github/workflows/ruby.yml +++ b/.github/workflows/ruby.yml @@ -29,7 +29,7 @@ jobs: BUNDLE_GEMFILE: ${{ matrix.gemfile }} steps: - - uses: actions/checkout@v3 + - uses: actions/checkout@v4 with: persist-credentials: false - uses: ruby/setup-ruby@v1