paritytech / libsecp256k1

Pure Rust Implementation of secp256k1.
Apache License 2.0
172 stars 84 forks source link

Pin GHA versions #133

Closed sergejparity closed 1 year ago

sergejparity commented 1 year ago

In order to improve our security posture with GitHub Actions usage. I've made a version pinning ether to commit hash or to specific version.

Also removed redundant dependabot config

Related issues and policy: https://github.com/paritytech/ci_cd/issues/464 https://github.com/paritytech/ci_cd/wiki/Policies-and-regulations:-GitHub-Actions-usage-policies