diff --git a/.github/workflows/bump-version.yaml b/.github/workflows/bump-version.yaml index b93ac18..f99144b 100644 --- a/.github/workflows/bump-version.yaml +++ b/.github/workflows/bump-version.yaml @@ -77,12 +77,12 @@ jobs: if: github.event_name == 'pull_request' steps: - name: Checkout own repo - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: token: ${{ secrets.WORKFLOW_PAT }} path: self - name: Checkout workflows repo - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: repository: IronCoreLabs/workflows ref: ${{ inputs.workflows_repo_ref }} @@ -97,12 +97,12 @@ jobs: if: ${{ github.event_name != 'pull_request'}} steps: - name: Checkout own repo - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: token: ${{ secrets.WORKFLOW_PAT }} path: self - name: Checkout workflows repo - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: repository: IronCoreLabs/workflows ref: ${{ inputs.workflows_repo_ref }} diff --git a/.github/workflows/check-docker-version.yaml b/.github/workflows/check-docker-version.yaml index 3161eb3..fae58dd 100644 --- a/.github/workflows/check-docker-version.yaml +++ b/.github/workflows/check-docker-version.yaml @@ -27,12 +27,12 @@ jobs: runs-on: ubuntu-24.04 steps: - name: Checkout own repo - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: token: ${{ secrets.WORKFLOW_PAT }} path: self - name: Checkout workflows repo - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: repository: IronCoreLabs/workflows ref: ${{ inputs.workflows_repo_ref }} diff --git a/.github/workflows/deploy.yaml b/.github/workflows/deploy.yaml index f3a2a1f..4296a19 100644 --- a/.github/workflows/deploy.yaml +++ b/.github/workflows/deploy.yaml @@ -57,7 +57,7 @@ jobs: echo "${HOME}/bin" >> ${GITHUB_PATH} - name: Check out software repo - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: ref: ${{ inputs.tag }} path: software @@ -90,7 +90,7 @@ jobs: # Make a PR to the deployments repo. - name: Check out deployments - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: fetch-depth: 0 repository: IronCoreLabs/deployments @@ -180,7 +180,7 @@ jobs: steps: # Update the local dev clusters to use the new container. - name: Check out depot - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: repository: IronCoreLabs/depot path: depot diff --git a/.github/workflows/docker.yaml b/.github/workflows/docker.yaml index f84a004..1eecbd8 100644 --- a/.github/workflows/docker.yaml +++ b/.github/workflows/docker.yaml @@ -188,7 +188,7 @@ jobs: matrix: runs_on: ${{ fromJson(needs.image.outputs.runners) }} steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: # Either the workflow_dispatch ref, or the prerelease tag, whichever is set. ref: ${{ github.event.inputs.ref }}${{ github.event.release.tag_name }} @@ -320,7 +320,7 @@ jobs: # So this conditional checks that the trigger was _not_ a pull_request. # The "contains()" conditional checks that this is a release like 1.2.3, not a prerelease like 1.2.3-rc.1. if: ${{ github.head_ref == '' && inputs.buildlog_repo != '' && !contains(needs.image.outputs.longtag, '-') }} - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: repository: ${{ inputs.buildlog_repo }} token: ${{ secrets.WORKFLOW_PAT }} @@ -328,7 +328,7 @@ jobs: path: .github/tmp_buildlog_dir - name: Checkout workflows repo if: ${{ github.head_ref == '' && inputs.buildlog_repo != '' && !contains(needs.image.outputs.longtag, '-')}} - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: repository: IronCoreLabs/workflows ref: ${{ inputs.workflow_repo_ref_override != '' && inputs.workflow_repo_ref_override || 'docker-v1'}} @@ -350,7 +350,7 @@ jobs: contents: read id-token: write steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: # Either the workflow_dispatch ref, or the prerelease tag, whichever is set. ref: ${{ github.event.inputs.ref }}${{ github.event.release.tag_name }} @@ -440,7 +440,7 @@ jobs: issues: write if: needs.image.outputs.prerelease == 'false' && inputs.skip_licensed_deployment_reminder == false steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: # Either the workflow_dispatch ref, or the prerelease tag, whichever is set. ref: ${{ github.event.inputs.ref }}${{ github.event.release.tag_name }} diff --git a/.github/workflows/rebuild.yaml b/.github/workflows/rebuild.yaml index 50a2685..16b24c6 100644 --- a/.github/workflows/rebuild.yaml +++ b/.github/workflows/rebuild.yaml @@ -29,7 +29,7 @@ jobs: ref: ${{ fromJSON(inputs.refs) }} steps: - name: Checkout - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: ref: ${{ matrix.ref }} token: ${{ secrets.WORKFLOW_PAT }} diff --git a/.github/workflows/rust-artifact.yaml b/.github/workflows/rust-artifact.yaml index ea686f3..7f385d0 100644 --- a/.github/workflows/rust-artifact.yaml +++ b/.github/workflows/rust-artifact.yaml @@ -61,7 +61,7 @@ jobs: rust_target: "${{ fromJSON(inputs.build_matrix_rust_target) }}" include: ${{ fromJSON(inputs.matrix_include) }} steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - name: Install additional dependencies if: ${{ inputs.additional_system_deps != '' }} run: | diff --git a/.github/workflows/rust-cargo-update.yaml b/.github/workflows/rust-cargo-update.yaml index 869aa37..9438296 100644 --- a/.github/workflows/rust-cargo-update.yaml +++ b/.github/workflows/rust-cargo-update.yaml @@ -17,7 +17,7 @@ jobs: cargo-update: runs-on: ubuntu-24.04 steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: token: ${{ secrets.WORKFLOW_PAT }} - uses: IronCoreLabs/rust-toolchain@v1 diff --git a/.github/workflows/rust-ci-test.yaml b/.github/workflows/rust-ci-test.yaml index f18518f..18d6faa 100644 --- a/.github/workflows/rust-ci-test.yaml +++ b/.github/workflows/rust-ci-test.yaml @@ -36,7 +36,7 @@ jobs: start_tsp: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - name: Save TSP env.integration to a file run: | cat > .env.integration < "${HOME}/.ssh/id_ed25519" chmod 600 "${HOME}/.ssh/id_ed25519" ssh-keyscan github.com > "${HOME}/.ssh/known_hosts" - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: path: ${{ env.UNDER_TEST_FOLDER }} - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 if: ${{ inputs.smelter_required }} with: repository: IronCoreLabs/sql-smelter @@ -175,10 +175,10 @@ jobs: echo '${{ secrets.LEEROY_PRIVATE_SSH_KEY }}' > "${HOME}/.ssh/id_ed25519" chmod 600 "${HOME}/.ssh/id_ed25519" ssh-keyscan github.com > "${HOME}/.ssh/known_hosts" - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: path: ${{ env.UNDER_TEST_FOLDER }} - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 if: ${{ inputs.smelter_required }} with: repository: IronCoreLabs/sql-smelter @@ -252,7 +252,7 @@ jobs: echo '${{ secrets.LEEROY_PRIVATE_SSH_KEY }}' > "${HOME}/.ssh/id_ed25519" chmod 600 "${HOME}/.ssh/id_ed25519" ssh-keyscan github.com > "${HOME}/.ssh/known_hosts" - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: path: ${{ env.UNDER_TEST_FOLDER }} - uses: IronCoreLabs/rust-toolchain@v1 @@ -283,7 +283,7 @@ jobs: echo '${{ secrets.LEEROY_PRIVATE_SSH_KEY }}' > "${HOME}/.ssh/id_ed25519" chmod 600 "${HOME}/.ssh/id_ed25519" ssh-keyscan github.com > "${HOME}/.ssh/known_hosts" - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: path: ${{ env.UNDER_TEST_FOLDER }} - name: Install additional dependencies diff --git a/.github/workflows/rust-daily.yaml b/.github/workflows/rust-daily.yaml index fab267b..e35f5b4 100644 --- a/.github/workflows/rust-daily.yaml +++ b/.github/workflows/rust-daily.yaml @@ -44,7 +44,7 @@ jobs: rust_target: "${{ fromJSON(inputs.rust_targets) }}" include: ${{ fromJSON(inputs.matrix_include) }} steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - name: Configure git ssh access run: | mkdir -p "${HOME}/.ssh" diff --git a/.github/workflows/rust-release.yaml b/.github/workflows/rust-release.yaml index 96c8d6c..77d0dd4 100644 --- a/.github/workflows/rust-release.yaml +++ b/.github/workflows/rust-release.yaml @@ -21,7 +21,7 @@ jobs: permissions: contents: write steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - run: cargo package - name: Dry run the publish if: inputs.dry_run diff --git a/.github/workflows/scala-ci.yaml b/.github/workflows/scala-ci.yaml index ca6bc87..5527153 100644 --- a/.github/workflows/scala-ci.yaml +++ b/.github/workflows/scala-ci.yaml @@ -69,13 +69,13 @@ jobs: else echo "can_push=false" >> "$GITHUB_OUTPUT" fi - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: path: ${{ env.UNDER_TEST_FOLDER }} # When pushable, check out the PR branch tip (not the merge ref) with the PAT so the auto-fix commit can be pushed back. ref: ${{ steps.push_mode.outputs.can_push == 'true' && github.head_ref || '' }} token: ${{ steps.push_mode.outputs.can_push == 'true' && secrets.WORKFLOW_PAT || github.token }} - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 if: ${{ inputs.smelter_required }} with: repository: IronCoreLabs/sql-smelter diff --git a/.github/workflows/scala-cve.yaml b/.github/workflows/scala-cve.yaml index 49652d2..f8677e8 100644 --- a/.github/workflows/scala-cve.yaml +++ b/.github/workflows/scala-cve.yaml @@ -11,7 +11,7 @@ jobs: test: runs-on: ubuntu-24.04 steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - name: Set file_name output var id: file_name run: echo "file_name=$(date +%B)-${GITHUB_REPOSITORY#*/}-cve.html" >> $GITHUB_OUTPUT diff --git a/.github/workflows/shell-ci.yaml b/.github/workflows/shell-ci.yaml index 8784e7a..0012737 100644 --- a/.github/workflows/shell-ci.yaml +++ b/.github/workflows/shell-ci.yaml @@ -11,7 +11,7 @@ jobs: test: runs-on: ubuntu-24.04 steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - name: Install shellspec run: curl -fsSL https://git.io/shellspec | sh -s -- --yes - name: Run tests diff --git a/.github/workflows/shellspec.yaml b/.github/workflows/shellspec.yaml index f08024b..2f9c396 100644 --- a/.github/workflows/shellspec.yaml +++ b/.github/workflows/shellspec.yaml @@ -13,7 +13,7 @@ jobs: test: runs-on: ubuntu-24.04 steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - name: Install shellspec run: | set -o pipefail diff --git a/.github/workflows/sql-smelter.yaml b/.github/workflows/sql-smelter.yaml index ae59dcb..775bbff 100644 --- a/.github/workflows/sql-smelter.yaml +++ b/.github/workflows/sql-smelter.yaml @@ -171,12 +171,12 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout main repository - uses: actions/checkout@v6 + uses: actions/checkout@v7 - name: Checkout sql-smelter repository id: checkout-sql-smelter continue-on-error: true - uses: actions/checkout@v6 + uses: actions/checkout@v7 with: repository: IronCoreLabs/sql-smelter ref: ${{ needs.determine-branch.outputs.selected_branch }} diff --git a/.github/workflows/typescript-ci.yaml b/.github/workflows/typescript-ci.yaml index 2b96317..388220e 100644 --- a/.github/workflows/typescript-ci.yaml +++ b/.github/workflows/typescript-ci.yaml @@ -80,10 +80,10 @@ jobs: run: working-directory: ${{ env.UNDER_TEST_FOLDER }} steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 with: path: ${{ env.UNDER_TEST_FOLDER }} - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 if: ${{ inputs.smelter_required }} with: repository: IronCoreLabs/sql-smelter diff --git a/.github/workflows/typescript-release.yaml b/.github/workflows/typescript-release.yaml index c62c05e..f30ec77 100644 --- a/.github/workflows/typescript-release.yaml +++ b/.github/workflows/typescript-release.yaml @@ -33,7 +33,7 @@ jobs: publish: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v6 + - uses: actions/checkout@v7 - uses: actions/setup-node@v6 with: node-version: ${{ inputs.node_version }}