diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 1b913c2..38375a3 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -29,11 +29,11 @@ jobs: uses: actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6 - name: Initialize CodeQL - uses: github/codeql-action/init@f079b8493333aace61c81488f8bd40919487bd9f # v3.25.7 + uses: github/codeql-action/init@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3.25.8 with: languages: "go" - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@f079b8493333aace61c81488f8bd40919487bd9f # v3.25.7 + uses: github/codeql-action/analyze@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3.25.8 with: category: "/language:go" diff --git a/.github/workflows/mega-linter.yml b/.github/workflows/mega-linter.yml index 6d315b7..0684574 100644 --- a/.github/workflows/mega-linter.yml +++ b/.github/workflows/mega-linter.yml @@ -35,7 +35,7 @@ jobs: id: ml # You can override MegaLinter flavor used to have faster performances # More info at https://megalinter.io/flavors/ - uses: oxsecurity/megalinter/flavors/go@03986e6993ccf699a22451118520680b438e7d2a # v7 + uses: oxsecurity/megalinter/flavors/go@5199c6377b4cb7faff749a1971636f3343db9fe6 # v7 env: # All available variables are described in documentation # https://megalinter.io/configuration/ diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 051c01e..7bcaa4a 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -44,6 +44,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@f079b8493333aace61c81488f8bd40919487bd9f # v3.25.7 + uses: github/codeql-action/upload-sarif@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3.25.8 with: sarif_file: results.sarif diff --git a/Dockerfile b/Dockerfile index 486ccf4..e323daf 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,4 +1,4 @@ -FROM cgr.dev/chainguard/go@sha256:4727ccbcce136929829a263371444a44229e9e923692eec4eba78a9523a276ef AS builder +FROM cgr.dev/chainguard/go@sha256:ffce5cfd74e0475306301a2c62c6bde0b2b337f5a7ebfa62b7e89b3c85ddc5db AS builder WORKDIR /app COPY . /app diff --git a/go.mod b/go.mod index dadfd87..dc78e21 100644 --- a/go.mod +++ b/go.mod @@ -2,7 +2,7 @@ module github.com/ortelius/scec-app-tag go 1.22 -toolchain go1.22.3 +toolchain go1.22.4 require ( github.com/arangodb/go-driver/v2 v2.1.0