From 9eed69d008b0d949999b787fa5b7554eb8f78d67 Mon Sep 17 00:00:00 2001 From: thepetk Date: Wed, 28 Aug 2024 11:48:08 +0100 Subject: [PATCH] Pin dependencies for golang modules Signed-off-by: thepetk --- .github/workflows/ci.yaml | 10 +++++----- .github/workflows/release-pr.yaml | 2 +- 2 files changed, 6 insertions(+), 6 deletions(-) diff --git a/.github/workflows/ci.yaml b/.github/workflows/ci.yaml index 5fad94c..d35ab40 100644 --- a/.github/workflows/ci.yaml +++ b/.github/workflows/ci.yaml @@ -50,10 +50,10 @@ jobs: fi - name: Check format run: | - go get -u github.com/google/addlicense - go install github.com/google/addlicense - go get -u golang.org/x/tools/cmd/goimports - go install golang.org/x/tools/cmd/goimports + go get -u github.com/google/addlicense@dc31ac9ffcca99c9457226366135701794b128c0 + go install github.com/google/addlicense@dc31ac9ffcca99c9457226366135701794b128c0 + go get -u golang.org/x/tools/cmd/goimports@0cc407e63f5fdd71499c32afa4c54382c5b48d71 + go install golang.org/x/tools/cmd/goimports@0cc407e63f5fdd71499c32afa4c54382c5b48d71 git reset HEAD --hard make fmt @@ -80,7 +80,7 @@ jobs: - name: Run Gosec Security Scanner run: | - go install github.com/securego/gosec/v2/cmd/gosec@v2.14.0 + go install github.com/securego/gosec/v2/cmd/gosec@1af1d5bb49259b62e45c505db397dd2ada5d74f8 make gosec if [[ $? != 0 ]] then diff --git a/.github/workflows/release-pr.yaml b/.github/workflows/release-pr.yaml index 4b264de..a2cfffd 100644 --- a/.github/workflows/release-pr.yaml +++ b/.github/workflows/release-pr.yaml @@ -31,7 +31,7 @@ jobs: go-version-file: 'go.mod' - name: Run Gosec Security Scanner run: | - go install github.com/securego/gosec/v2/cmd/gosec@v2.14.0 + go install github.com/securego/gosec/v2/cmd/gosec@1af1d5bb49259b62e45c505db397dd2ada5d74f8 make gosec if [[ $? != 0 ]] then