From 6cb8f158559038d7c9baaee9a4d40646312e860c Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 24 May 2022 23:33:45 +0000 Subject: [PATCH] :seedling: Bump openssf/scorecard from v4.2.0 to v4.3.0 Bumps openssf/scorecard from v4.2.0 to v4.3.0. --- updated-dependencies: - dependency-name: openssf/scorecard dependency-type: direct:production ... Signed-off-by: dependabot[bot] --- Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile b/Dockerfile index 774a8b9a..e06ac232 100644 --- a/Dockerfile +++ b/Dockerfile @@ -21,7 +21,7 @@ # -e INPUT_REPO_TOKEN=$GITHUB_AUTH_TOKEN \ # -e GITHUB_REPOSITORY="ossf/scorecard" \ # laurentsimon/scorecard-action:latest -FROM gcr.io/openssf/scorecard:v4.2.0@sha256:86666488851413a52fa4dee05df503aa0ed8e93fbf71b1f4c96b2539bd9e4306 as base +FROM gcr.io/openssf/scorecard:v4.3.0@sha256:86666488851413a52fa4dee05df503aa0ed8e93fbf71b1f4c96b2539bd9e4306 as base # Build our image and update the root certs. # TODO: use distroless.