Skip to content

[P3] SHA-pin the safe-settings checkout ref #8

@nbrieussel

Description

@nbrieussel

Why

Git tags are mutable. Pinning to a commit SHA guarantees the exact code run.

git ls-remote https://github.com/github/safe-settings refs/tags/2.1.19

Best done at the same time as the 2.1.19 upgrade.

Audit report — section 2a

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions