api-cookbook icon indicating copy to clipboard operation
api-cookbook copied to clipboard

chore: [sc-285688] pin github actions with SHA

Open xkill-9 opened this issue 8 months ago • 0 comments

Added explicit versions to our github actions to mitigate supply-chain attacks as recommended in https://docs.github.com/en/actions/security-for-github-actions/security-guides/security-hardening-for-github-actions#using-third-party-actions

Story link: https://app.shortcut.com/internal/story/285688/security-explicit-github-actions-versions-for-api-cookbook

xkill-9 avatar Apr 03 '25 18:04 xkill-9