Skip to content

chore(DATAGO-154079): pin actions and fix unpinned nested action dependencies - #412

Merged
TamimiGitHub merged 1 commit into
masterfrom
ci/DATAGO-154079-fix-nested-pins
Oct 8, 2026
Merged

TamimiGitHub merged 1 commit into
masterfrom
ci/DATAGO-154079-fix-nested-pins

Conversation

@artyom-morozov

Copy link
Copy Markdown
Contributor

Fixes actions that the org's "actions must be pinned to a full-length commit SHA" policy rejects. The policy also checks actions nested inside composite actions and reusable workflows, so a pinned top-level ref can still fail if what it calls internally isn't pinned. Each new ref below was re-checked: nothing unpinned or missing at any depth.

Line Before After Why
.github/workflows/site-update.yml:22 shimataro/ssh-key-action@v2 shimataro/ssh-key-action@87a8f067114a8ce263df83e9ed5c849953548bc3 # v2 v2 resolved to its commit

Part of DATAGO-154079.

…ndencies

Re-points actions so every action reachable from these workflows is pinned to a
full-length commit SHA, including actions nested inside composite actions and
reusable workflows (org SHA-pin policy).
@solacecommunity-bot

Copy link
Copy Markdown
Collaborator

Thanks for opening up a PR and contributing to our open source codelabs!

Review process Guidelines

Once the PR is opened, tag at least one Technical Reviewer

Technical Reviewer Responsibilities

  • Dry-run technical steps
  • Review technical positioning/messaging
  • Point out typos and potential formatting issues
  • Technical Reviewer(s): "Approve" or "Request Changes" by navigating to the Files changed tab and click on the "Review Changes" drop down
    Review Changes button

Post Technical Review

A member of the Developer Advocate Team will review overall structure and merge into master which will push it to production

@TamimiGitHub
TamimiGitHub merged commit bb87876 into master Oct 8, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants