From d271bd853b12eb582d55d783580efe668bad022b Mon Sep 17 00:00:00 2001 From: Sebastian Schuberth Date: Thu, 11 Jul 2024 22:28:04 +0200 Subject: [PATCH] ci(renovate): Automatically pin GitHub action digests This should silence OpenSSF Scorecards warnings about a "GitHubAction not pinned by hash". Signed-off-by: Sebastian Schuberth --- renovate.json | 1 + 1 file changed, 1 insertion(+) diff --git a/renovate.json b/renovate.json index 1ccccb00aba44..b545f93ad0377 100644 --- a/renovate.json +++ b/renovate.json @@ -3,6 +3,7 @@ "extends": [ "config:recommended", "docker:disable", + "helpers:pinGitHubActionDigests", ":semanticCommitScopeDisabled", ":semanticCommitTypeAll(deps)" ],