Skip to content

Publish Immutable actions #84

@Fdawgs

Description

@Fdawgs

The majority of the official actions/ actions all publish immutable actions (see actions/checkout for example), it'd be great if this one could also be so we don't have to pin to the full length commit SHA if we want immutability.

This could be tackled by:

  1. Adding an immutable action publish workflow
  2. Adding the action to codeql's immutable actions list so it doesn't get flagged by the CWE-829 rule

Happy to make the PR(s) for this.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions