diff --git a/.github/workflows/reuse.yml b/.github/workflows/reuse.yml index d8ec8eb6..0d12a15e 100644 --- a/.github/workflows/reuse.yml +++ b/.github/workflows/reuse.yml @@ -98,7 +98,7 @@ jobs: - name: Upload SBOM JSON if: ${{inputs.tag == 'release'}} - uses: actions/upload-artifact@0b7f8abb1508181956e8e162db84b466c27e18ce # v3.1.2 + uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3.1.3 with: name: ${{inputs.image_name}}-bom-cdx path: ${{inputs.image_name}}-v*-bom.cdx.json diff --git a/.github/workflows/scorecards.yml b/.github/workflows/scorecards.yml index 60888f27..dcd4bde8 100644 --- a/.github/workflows/scorecards.yml +++ b/.github/workflows/scorecards.yml @@ -44,7 +44,7 @@ jobs: # Upload the results as artifacts (optional). - name: "Upload artifact" - uses: actions/upload-artifact@0b7f8abb1508181956e8e162db84b466c27e18ce # v3.1.2 + uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3.1.3 with: name: SARIF file path: results.sarif