From d7e9050163b302d5b544b0c7da12f86223a92555 Mon Sep 17 00:00:00 2001 From: aceld Date: Wed, 18 Dec 2024 17:21:50 +0800 Subject: [PATCH 1/2] fix CodeQL:Unpinned tag for a non-immutable Action in workflow --- .github/workflows/reviewdog.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/reviewdog.yml b/.github/workflows/reviewdog.yml index 7392685d..39559b73 100644 --- a/.github/workflows/reviewdog.yml +++ b/.github/workflows/reviewdog.yml @@ -13,7 +13,7 @@ jobs: - name: Check out code into the Go module directory uses: actions/checkout@v3 - name: golangci-lint - uses: reviewdog/action-golangci-lint@v2 + uses: reviewdog/action-golangci-lint@v2.7.0 with: github_token: ${{ secrets.github_token }} # Change reviewdog reporter if you need [github-pr-check,github-check,github-pr-review]. From 720b50c8c0470c626d8fd626d5f366b9eb1463e4 Mon Sep 17 00:00:00 2001 From: aceld Date: Wed, 18 Dec 2024 17:27:58 +0800 Subject: [PATCH 2/2] use commit hash --- .github/workflows/reviewdog.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/reviewdog.yml b/.github/workflows/reviewdog.yml index 39559b73..9ee0637f 100644 --- a/.github/workflows/reviewdog.yml +++ b/.github/workflows/reviewdog.yml @@ -13,7 +13,7 @@ jobs: - name: Check out code into the Go module directory uses: actions/checkout@v3 - name: golangci-lint - uses: reviewdog/action-golangci-lint@v2.7.0 + uses: reviewdog/action-golangci-lint@dd3fda91790ca90e75049e5c767509dc0ec7d99b with: github_token: ${{ secrets.github_token }} # Change reviewdog reporter if you need [github-pr-check,github-check,github-pr-review].