diff --git a/.github/workflows/security-scan.yml b/.github/workflows/security-scan.yml index 8c8cac6..0ba23fd 100644 --- a/.github/workflows/security-scan.yml +++ b/.github/workflows/security-scan.yml @@ -49,7 +49,7 @@ jobs: steps: - name: Download latest dist artifacts from CI - uses: dawidd6/action-download-artifact@v6 + uses: dawidd6/action-download-artifact@bf251b5aa9c2f7eeb574a96ee720e24f801b7c11 # v6 with: workflow: build.yml name: dist @@ -58,7 +58,7 @@ jobs: - name: Upload artifacts for scanning if: hashFiles('dist/**/*') != '' - uses: actions/upload-artifact@v4 + uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # v4 with: name: build path: dist/