Ocelot-Social-Community / ocelot.social

ocelot.social website
6 stars 2 forks source link

refactor(workflow): pin all github actions by commit hash #162

Closed mahula closed 2 weeks ago

mahula commented 1 month ago

Motivation

This comment on Github Action versions in Github workflows emphasizes the importance of taking measures to reduce the risk of being affected by supply chain attacks. One Measure is pinning the Github Actions in our workflows by commit hash rather than by tag.

How to test

Just see the workflows work.