.github: pin re-actors/alls-green to latest 1.x (#13558)

Pin re-actors/alls-green usage to latest 1.x. This was previously
pointing to `@release/v2` which pulls in the latest changes from this
branch as they are released, with the potential to break our workflows
if a breaking change or malicious version on this stream is ever pushed.

Changing this to a pinned version also means that dependabot will keep
this in the pinned version format (e.g., referencing a SHA) when it
opens a PR to bump the dependency.

Updates #cleanup

Signed-off-by: Mario Minardi <mario@tailscale.com>
pull/13081/merge
Mario Minardi 2 months ago committed by GitHub
parent 04bbef0e8b
commit 05d82fb0d8
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

@ -601,6 +601,6 @@ jobs:
steps: steps:
- name: Decide if change is okay to merge - name: Decide if change is okay to merge
if: github.event_name != 'push' if: github.event_name != 'push'
uses: re-actors/alls-green@release/v1 uses: re-actors/alls-green@05ac9388f0aebcb5727afa17fcccfecd6f8ec5fe # v1.2.2
with: with:
jobs: ${{ toJSON(needs) }} jobs: ${{ toJSON(needs) }}

Loading…
Cancel
Save