From 3cf5a4ee1091e035b063a523a74fcaeedb852169 Mon Sep 17 00:00:00 2001
From: Michal Babej <michal.babej@intel.com>
Date: Mon, 7 Oct 2024 17:13:06 +0300
Subject: [PATCH] GH workflows: pin dependencies

---
 .github/workflows/scorecard.yml | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml
index 6b60aa1ab..3c57e2d3f 100644
--- a/.github/workflows/scorecard.yml
+++ b/.github/workflows/scorecard.yml
@@ -69,6 +69,6 @@ jobs:
       # Upload the results to GitHub's code scanning dashboard (optional).
       # Commenting out will disable upload of results to your repo's Code Scanning dashboard
       - name: "Upload to code-scanning"
-        uses: github/codeql-action/upload-sarif@v3
+        uses: github/codeql-action/upload-sarif@6db8d6351fd0be61f9ed8ebd12ccd35dcec51fea
         with:
           sarif_file: results.sarif
-- 
GitLab