diff --git a/.github/workflows/scorecard.yaml b/.github/workflows/scorecard.yaml index 72eb41c0c5..a6d515447c 100644 --- a/.github/workflows/scorecard.yaml +++ b/.github/workflows/scorecard.yaml @@ -47,6 +47,6 @@ jobs: retention-days: 5 - name: Upload to code-scanning if: steps.checksecret.outputs.result == 'true' - uses: github/codeql-action/upload-sarif@f0e3dfb30302f8a0881bb509b044e0de4f6ef589 # v2.3.4 + uses: github/codeql-action/upload-sarif@0225834cc549ee0ca93cb085b92954821a145866 # v2.3.5 with: sarif_file: results.sarif