diff --git a/.github/workflows/asf-allowlist-check.yml b/.github/workflows/asf-allowlist-check.yml index 83045bfebf..e207756df5 100644 --- a/.github/workflows/asf-allowlist-check.yml +++ b/.github/workflows/asf-allowlist-check.yml @@ -40,7 +40,7 @@ jobs: name: "Analyze Actions" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false @@ -50,6 +50,6 @@ jobs: # Analyze workflows with Zizmor - name: Run zizmor 🌈 - uses: zizmorcore/zizmor-action@192e21d79ab29983730a13d1382995c2307fbcaa # v0.5.7 + uses: zizmorcore/zizmor-action@6599ee8b7a49aef6a770f63d261d214911a7ce02 # v0.6.0 with: advanced-security: false diff --git a/.github/workflows/csharp.yml b/.github/workflows/csharp.yml index e524ce72a4..e86d787010 100644 --- a/.github/workflows/csharp.yml +++ b/.github/workflows/csharp.yml @@ -60,13 +60,13 @@ jobs: # and relying on the runner image to supply the other leaves one target # framework silently dependent on the image contents. - name: Install C# - uses: actions/setup-dotnet@26b0ec14cb23fa6904739307f278c14f94c95bf1 # v5.4.0 + uses: actions/setup-dotnet@a98b56852c35b8e3190ac28c8c2271da59106c68 # v6.0.0 with: dotnet-version: | 8.0.x 10.0.x - name: Checkout ADBC - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 submodules: recursive @@ -102,13 +102,13 @@ jobs: lib-name: Apache.Arrow.Adbc.TestFixture.Native.dylib steps: - name: Checkout ADBC - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 submodules: recursive persist-credentials: false - name: Install .NET 10 - uses: actions/setup-dotnet@26b0ec14cb23fa6904739307f278c14f94c95bf1 # v5.4.0 + uses: actions/setup-dotnet@a98b56852c35b8e3190ac28c8c2271da59106c68 # v6.0.0 with: # NativeAOT requires net10. Using 10.0.x selects the latest # available SDK; preview tags may be needed until GA. diff --git a/.github/workflows/dev.yml b/.github/workflows/dev.yml index 5531a7b822..b5b83c1fac 100644 --- a/.github/workflows/dev.yml +++ b/.github/workflows/dev.yml @@ -47,7 +47,7 @@ jobs: if: github.event_name == 'pull_request' runs-on: ubuntu-slim steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 1 persist-credentials: false @@ -73,18 +73,18 @@ jobs: name: "pre-commit" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 1 persist-credentials: false - name: Get required Go version run: | (. .env && echo "GO_VERSION=${GO}") >> $GITHUB_ENV - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true - - uses: actions/setup-python@ece7cb06caefa5fff74198d8649806c4678c61a1 # v6.3.0 + - uses: actions/setup-python@5fda3b95a4ea91299a34e894583c3862153e4b97 # v7.0.0 with: python-version: '3.x' - name: install golangci-lint diff --git a/.github/workflows/dev_adbc.yml b/.github/workflows/dev_adbc.yml index d5e97ab682..1879959725 100644 --- a/.github/workflows/dev_adbc.yml +++ b/.github/workflows/dev_adbc.yml @@ -47,7 +47,7 @@ jobs: name: "pre-commit" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false diff --git a/.github/workflows/integration.yml b/.github/workflows/integration.yml index 2bea5d4943..19199451f5 100644 --- a/.github/workflows/integration.yml +++ b/.github/workflows/integration.yml @@ -57,7 +57,7 @@ jobs: name: "DuckDB Integration Tests" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -104,7 +104,7 @@ jobs: name: "FlightSQL Integration Tests (Dremio, SQLite, and GizmoSQL)" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -131,7 +131,7 @@ jobs: --file ci/conda_env_cpp.txt \ --file ci/conda_env_python.txt pip install pytest-error-for-skips - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -181,7 +181,7 @@ jobs: # Preinstalled tools use a lot of disk space, free up some space # https://github.com/actions/runner-images/issues/2840 sudo rm -rf "$AGENT_TOOLSDIRECTORY" - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -278,7 +278,7 @@ jobs: ./ci/scripts/python_test.sh "$(pwd)" "$(pwd)/build" docker compose down docker compose rm -fsv - - uses: astral-sh/setup-uv@11f9893b081a58869d3b5fccaea48c9e9e46f990 # v8.3.2 + - uses: astral-sh/setup-uv@c771a70e6277c0a99b617c7a806ffedaca235ff9 # v9.0.0 - name: Run PostgreSQL Validation Suite run: | env POSTGRES_VERSION=18 docker compose up --wait --detach postgres-test @@ -289,14 +289,14 @@ jobs: name: "FlightSQL C# Interop" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false - name: Get required Go version run: | (. .env && echo "GO_VERSION=${GO}") >> $GITHUB_ENV - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true diff --git a/.github/workflows/java.yml b/.github/workflows/java.yml index ec758409f8..3a06967374 100644 --- a/.github/workflows/java.yml +++ b/.github/workflows/java.yml @@ -50,7 +50,7 @@ jobs: matrix: java: ['11', '17', '21', '25'] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -76,7 +76,7 @@ jobs: matrix: java: ['21', '25'] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -118,7 +118,7 @@ jobs: env: VCPKG_ROOT: "${{ github.workspace }}/vcpkg" steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -134,7 +134,7 @@ jobs: - name: Install vcpkg run: | ./ci/scripts/install_vcpkg.sh $VCPKG_ROOT $VCPKG_VERSION - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -251,7 +251,7 @@ jobs: - { java: '25', os: Windows, arch: amd64, runner: windows-latest } max-parallel: 4 steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false diff --git a/.github/workflows/javascript.yml b/.github/workflows/javascript.yml index 08b83d2415..c0519a07c9 100644 --- a/.github/workflows/javascript.yml +++ b/.github/workflows/javascript.yml @@ -50,7 +50,7 @@ jobs: name: Lint runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -98,7 +98,7 @@ jobs: name: Build Node.js ${{ matrix.settings.target }} runs-on: ${{ matrix.settings.host }} steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -150,7 +150,7 @@ jobs: - host: windows-latest target: x86_64-pc-windows-msvc steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false diff --git a/.github/workflows/native-unix.yml b/.github/workflows/native-unix.yml index 3af8831c0b..29375d0b56 100644 --- a/.github/workflows/native-unix.yml +++ b/.github/workflows/native-unix.yml @@ -81,7 +81,7 @@ jobs: # https://conda-forge.org/docs/maintainer/knowledge_base.html#newer-c-features-with-old-sdk CXXFLAGS: "-D_LIBCPP_DISABLE_AVAILABILITY" steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -106,7 +106,7 @@ jobs: run: | ./ci/scripts/remamba.sh install -c conda-forge \ --file ci/conda_env_cpp.txt - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -162,7 +162,7 @@ jobs: # https://conda-forge.org/docs/maintainer/knowledge_base.html#newer-c-features-with-old-sdk CXXFLAGS: "-D_LIBCPP_DISABLE_AVAILABILITY" steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -221,7 +221,7 @@ jobs: matrix: os: ["ubuntu-latest"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -232,14 +232,14 @@ jobs: - name: Get required Go version run: | (. .env && echo "GO_VERSION=${GO}") >> $GITHUB_ENV - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true cache: true cache-dependency-path: go/adbc/go.sum - name: Setup Python - uses: actions/setup-python@ece7cb06caefa5fff74198d8649806c4678c61a1 # v6.3.0 + uses: actions/setup-python@5fda3b95a4ea91299a34e894583c3862153e4b97 # v7.0.0 with: python-version: '3.x' - name: Install Meson via Python @@ -283,7 +283,7 @@ jobs: name: "clang-tidy" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -329,7 +329,7 @@ jobs: # https://conda-forge.org/docs/maintainer/knowledge_base.html#newer-c-features-with-old-sdk CXXFLAGS: "-D_LIBCPP_DISABLE_AVAILABILITY" steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -401,7 +401,7 @@ jobs: contents: 'read' id-token: 'write' steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -410,7 +410,7 @@ jobs: # the 'toolchain' parameter and staticcheck tends to need the latest Go - id: toolchain run: echo "GO_VERSION=$(sed -n 's/^toolchain go//p' go/adbc/go.mod)" >> "$GITHUB_OUTPUT" - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: ${{ steps.toolchain.outputs.GO_VERSION }} check-latest: true @@ -449,7 +449,7 @@ jobs: contents: 'read' id-token: 'write' steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -479,7 +479,7 @@ jobs: run: | ./ci/scripts/remamba.sh install -c conda-forge \ --file ci/conda_env_cpp.txt - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -523,7 +523,7 @@ jobs: # https://conda-forge.org/docs/maintainer/knowledge_base.html#newer-c-features-with-old-sdk CXXFLAGS: "-D_LIBCPP_DISABLE_AVAILABILITY" steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -554,7 +554,7 @@ jobs: if: matrix.os == 'ubuntu-latest' run: | sudo sysctl vm.mmap_rnd_bits=28 - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -649,7 +649,7 @@ jobs: os: ["ubuntu-latest"] python: ["3.14"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false diff --git a/.github/workflows/native-windows.yml b/.github/workflows/native-windows.yml index 6869bba78d..2a8d0c22b6 100644 --- a/.github/workflows/native-windows.yml +++ b/.github/workflows/native-windows.yml @@ -64,7 +64,7 @@ jobs: matrix: os: ["windows-latest"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -118,7 +118,7 @@ jobs: matrix: os: ["windows-latest"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -186,7 +186,7 @@ jobs: matrix: os: ["windows-latest"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -215,7 +215,7 @@ jobs: run: | mamba install -c conda-forge ` --file ci\conda_env_cpp.txt - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -254,7 +254,7 @@ jobs: os: ["windows-latest"] python: ["3.10", "3.14"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -370,7 +370,7 @@ jobs: arch: ["x64"] config: ["debug", "release"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false diff --git a/.github/workflows/nightly-verify.yml b/.github/workflows/nightly-verify.yml index d896457b7b..3142c329bf 100644 --- a/.github/workflows/nightly-verify.yml +++ b/.github/workflows/nightly-verify.yml @@ -50,7 +50,7 @@ jobs: if: github.event_name != 'schedule' || github.repository == 'apache/arrow-adbc' runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -119,7 +119,7 @@ jobs: matrix: os: ["macos-15-intel", "macos-latest", "ubuntu-latest", "windows-latest"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 path: arrow-adbc @@ -205,7 +205,7 @@ jobs: name: "Run Docker Tests" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 path: arrow-adbc @@ -256,7 +256,7 @@ jobs: - os: ubuntu version: "24.04" steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 path: arrow-adbc diff --git a/.github/workflows/nightly-website.yml b/.github/workflows/nightly-website.yml index 31cd773ecc..498bb4d9b3 100644 --- a/.github/workflows/nightly-website.yml +++ b/.github/workflows/nightly-website.yml @@ -44,7 +44,7 @@ jobs: name: "Build Website" runs-on: ubuntu-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -67,14 +67,14 @@ jobs: # need write since we push to asf-site contents: write steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 path: site # NOTE: needed to push at the end persist-credentials: true ref: asf-site - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 path: scripts @@ -86,7 +86,7 @@ jobs: path: temp # To use pip below, we need to install our own Python; the system Python's # pip won't let us install packages without a scary flag. - - uses: actions/setup-python@ece7cb06caefa5fff74198d8649806c4678c61a1 # v6.3.0 + - uses: actions/setup-python@5fda3b95a4ea91299a34e894583c3862153e4b97 # v7.0.0 with: python-version: '3.x' - name: Build diff --git a/.github/workflows/packaging.yml b/.github/workflows/packaging.yml index d8d85e91b3..77a8763711 100644 --- a/.github/workflows/packaging.yml +++ b/.github/workflows/packaging.yml @@ -65,7 +65,7 @@ jobs: # For cron: only run on the main repo, not forks if: github.event_name != 'schedule' || github.repository == 'apache/arrow-adbc' steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -123,7 +123,7 @@ jobs: run: | (. adbc/.env && echo "GO_VERSION=${GO}") >> $GITHUB_ENV - name: Setup Go - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -388,7 +388,7 @@ jobs: with: name: source - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: repository: apache/arrow path: arrow @@ -425,7 +425,7 @@ jobs: mv apache-arrow-adbc-$VERSION.tar.gz adbc/ci/linux-packages/ - name: Set up Ruby - uses: ruby/setup-ruby@8e41b362d2589a22a44c1cfa214b3c83052c195b # v1.318.0 + uses: ruby/setup-ruby@a30dfa457ad68707b8b910ac3a244714b61c0626 # v1.320.0 with: ruby-version: ruby @@ -828,7 +828,7 @@ jobs: run: | (. adbc/.env && echo "GO_VERSION=${GO}") >> $GITHUB_ENV - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -1006,7 +1006,7 @@ jobs: .\bootstrap-vcpkg.bat -disableMetrics popd - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true @@ -1014,7 +1014,7 @@ jobs: cache-dependency-path: adbc/go/adbc/go.sum - name: Install Python ${{ matrix.python_version }} - uses: actions/setup-python@ece7cb06caefa5fff74198d8649806c4678c61a1 # v6.3.0 + uses: actions/setup-python@5fda3b95a4ea91299a34e894583c3862153e4b97 # v7.0.0 with: check-latest: true python-version: ${{ matrix.python_version }} @@ -1318,7 +1318,7 @@ jobs: run: shell: bash -l -eo pipefail {0} steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: true @@ -1357,11 +1357,11 @@ jobs: runs-on: ubuntu-latest if: github.ref_name == 'main' && (github.event.schedule || inputs.upload_artifacts) steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false - name: Install Python - uses: actions/setup-python@ece7cb06caefa5fff74198d8649806c4678c61a1 # v6.3.0 + uses: actions/setup-python@5fda3b95a4ea91299a34e894583c3862153e4b97 # v7.0.0 with: python-version: '3.13' - name: Clean @@ -1384,7 +1384,7 @@ jobs: - python-windows - python-sdist steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: true diff --git a/.github/workflows/r-check.yml b/.github/workflows/r-check.yml index 8b76e1164d..267059013c 100644 --- a/.github/workflows/r-check.yml +++ b/.github/workflows/r-check.yml @@ -45,13 +45,13 @@ jobs: runs-on: ${{ inputs.os }}-latest steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false - name: Get required Go version run: | (. .env && echo "GO_VERSION=${GO}") >> $GITHUB_ENV - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" - uses: r-lib/actions/setup-r@d3c5be51b12e724e68f33216ca3c148b66d5f0b6 # v2.12.1 diff --git a/.github/workflows/r-extended.yml b/.github/workflows/r-extended.yml index f39c1e3319..d4644bb2a3 100644 --- a/.github/workflows/r-extended.yml +++ b/.github/workflows/r-extended.yml @@ -126,7 +126,7 @@ jobs: fail-fast: false steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: persist-credentials: false - uses: r-lib/actions/setup-r@d3c5be51b12e724e68f33216ca3c148b66d5f0b6 # v2.12.1 diff --git a/.github/workflows/rust.yml b/.github/workflows/rust.yml index ed12e53f0d..74d6858539 100644 --- a/.github/workflows/rust.yml +++ b/.github/workflows/rust.yml @@ -69,7 +69,7 @@ jobs: CARGO_INCREMENTAL: 0 RUSTFLAGS: "-Adead_code" # TODO(alexandreyc): remove this line when implementation is complete steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -88,7 +88,7 @@ jobs: - name: Get required Go version run: | (. ./.env && echo "GO_VERSION=${GO}") >> $GITHUB_ENV - - uses: actions/setup-go@924ae3a1cded613372ab5595356fb5720e22ba16 # v6.5.0 + - uses: actions/setup-go@b7ad1dad31e06c5925ef5d2fc7ad053ef454303e # v7.0.0 with: go-version: "${{ env.GO_VERSION }}" check-latest: true diff --git a/.github/workflows/verify.yml b/.github/workflows/verify.yml index 5945b142ef..a792b88021 100644 --- a/.github/workflows/verify.yml +++ b/.github/workflows/verify.yml @@ -52,7 +52,7 @@ jobs: matrix: os: ["macos-15-intel", "macos-latest", "ubuntu-latest"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false @@ -84,7 +84,7 @@ jobs: matrix: os: ["macos-15-intel", "macos-latest", "ubuntu-latest", "windows-latest"] steps: - - uses: actions/checkout@9c091bb21b7c1c1d1991bb908d89e4e9dddfe3e0 # v7.0.0 + - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 with: fetch-depth: 0 persist-credentials: false