From e38f2b2c2c70cb9f94b1a3b7e35864adae6c8b5d Mon Sep 17 00:00:00 2001 From: wollomatic Date: Sat, 21 Feb 2026 19:41:48 +0100 Subject: [PATCH] pin gosec to v2.23.0 --- .github/workflows/docker-image-release.yaml | 2 +- .github/workflows/docker-image-testing.yaml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/docker-image-release.yaml b/.github/workflows/docker-image-release.yaml index 81d38ce..c4a5f16 100644 --- a/.github/workflows/docker-image-release.yaml +++ b/.github/workflows/docker-image-release.yaml @@ -20,7 +20,7 @@ jobs: uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 - name: Run Gosec Security Scanner - uses: securego/gosec@f3e2fac4d58b7eca54307cd40ce2a836a12e4d95 # master + uses: securego/gosec@398ad549bbf1a51dc978fd966169f660c59774de # v2.23.0 with: args: ./... diff --git a/.github/workflows/docker-image-testing.yaml b/.github/workflows/docker-image-testing.yaml index 2fb1d1b..95ff12b 100644 --- a/.github/workflows/docker-image-testing.yaml +++ b/.github/workflows/docker-image-testing.yaml @@ -22,7 +22,7 @@ jobs: uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 - name: Run Gosec Security Scanner - uses: securego/gosec@f3e2fac4d58b7eca54307cd40ce2a836a12e4d95 # master + uses: securego/gosec@398ad549bbf1a51dc978fd966169f660c59774de # v2.23.0 with: args: ./...