From 6e8bf35ee2140221a3f15ddaf9f2e1c842badd97 Mon Sep 17 00:00:00 2001 From: Martin Hjelmare Date: Tue, 13 Sep 2022 08:52:24 +0200 Subject: [PATCH] Pin github actions and add dependabot actions ecosystem (#49) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Co-authored-by: Joakim Sørensen --- .github/dependabot.yml | 15 ++++++++++----- .github/workflows/ci.yml | 4 ++-- .github/workflows/pythonpublish.yml | 4 ++-- .github/workflows/release-drafter.yml | 2 +- 4 files changed, 15 insertions(+), 10 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 491deae..74e05b8 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -1,7 +1,12 @@ version: 2 updates: -- package-ecosystem: pip - directory: "/" - schedule: - interval: daily - open-pull-requests-limit: 10 + - package-ecosystem: "github-actions" + directory: "/" + schedule: + interval: daily + open-pull-requests-limit: 10 + - package-ecosystem: pip + directory: "/" + schedule: + interval: weekly + open-pull-requests-limit: 10 diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 6185b9c..45e815a 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -14,9 +14,9 @@ jobs: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3.0.2 - name: Set up Python 3.8 - uses: actions/setup-python@v1 + uses: actions/setup-python@v4.2.0 with: python-version: 3.8 - name: Install dependencies diff --git a/.github/workflows/pythonpublish.yml b/.github/workflows/pythonpublish.yml index 8fadfb1..4ce42c5 100644 --- a/.github/workflows/pythonpublish.yml +++ b/.github/workflows/pythonpublish.yml @@ -13,9 +13,9 @@ jobs: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v2 + - uses: actions/checkout@v3.0.2 - name: Set up Python - uses: actions/setup-python@v1 + uses: actions/setup-python@v4.2.0 with: python-version: '3.x' - name: Install dependencies diff --git a/.github/workflows/release-drafter.yml b/.github/workflows/release-drafter.yml index 490103e..4322303 100644 --- a/.github/workflows/release-drafter.yml +++ b/.github/workflows/release-drafter.yml @@ -10,6 +10,6 @@ jobs: runs-on: ubuntu-latest steps: # Drafts your next Release notes as Pull Requests are merged into "master" - - uses: release-drafter/release-drafter@v5 + - uses: release-drafter/release-drafter@v5.20.1 env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}