Skip to content

SECENG-7700 [security] pinning actions and docker images#11

Merged
amplilakshmanan merged 1 commit into
masterfrom
seceng-7700-pin-actions
Apr 2, 2026
Merged

SECENG-7700 [security] pinning actions and docker images#11
amplilakshmanan merged 1 commit into
masterfrom
seceng-7700-pin-actions

Conversation

@amplilakshmanan
Copy link
Copy Markdown

Summary

  • Pin all GitHub Actions to full-length commit SHAs to prevent supply chain attacks
  • Pin Docker base images to digest SHAs where applicable

Test plan

  • Verify workflows run as expected after pinning

@amplilakshmanan amplilakshmanan merged commit 9e4bf0e into master Apr 2, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant