Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update trufflesecurity/trufflehog action to v3.88.0 #6

Merged
merged 1 commit into from
Jan 14, 2025

Update trufflesecurity/trufflehog action to v3.88.0

81e2aa2
Select commit
Loading
Failed to load commit list.
Merged

Update trufflesecurity/trufflehog action to v3.88.0 #6

Update trufflesecurity/trufflehog action to v3.88.0
81e2aa2
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL succeeded Jan 11, 2025 in 6s

1 new alert including 1 medium severity security vulnerability

New alerts in code changed by this pull request

Security Alerts:

  • 1 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 21 in .github/workflows/truffle_hog.yml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'truffle_hog.yml' step
Uses Step: trufflehog
uses 'trufflesecurity/trufflehog' with ref 'v3.88.0', not a pinned commit hash