fix(security): pin all workflow action references to SHA hashes#261
fix(security): pin all workflow action references to SHA hashes#261
Conversation
Agent-Logs-Url: https://github.com/jdfalk/ghcommon/sessions/434d31dd-67d4-4e07-a6d1-7c3ae4eb30e2 Co-authored-by: jdfalk <1310106+jdfalk@users.noreply.github.com>
|
@copilot Can you fix this: 2026-04-02T23:02:54.6792464Z ##[group]Run actions/dependency-review-action@2031cfc |
Agent-Logs-Url: https://github.com/jdfalk/ghcommon/sessions/38858ba6-31e3-4aa1-aa3c-be24f39a7b64 Co-authored-by: jdfalk <1310106+jdfalk@users.noreply.github.com>
Fixed in f45d2e3. The |
dependency-review-config.yml- remove emptyallow-licenses: []that conflicted withdeny-licenses