diff --git a/.github/workflows/scorecards.yml b/.github/workflows/scorecards.yml index 95ee238ca60..a0f4dd796ef 100644 --- a/.github/workflows/scorecards.yml +++ b/.github/workflows/scorecards.yml @@ -36,7 +36,7 @@ jobs: persist-credentials: false - name: "Run analysis" - uses: ossf/scorecard-action@99c53751e09b9529366343771cc321ec74e9bd3d # v2.0.6 + uses: ossf/scorecard-action@0864cf19026789058feabb7e87baa5f140aac736 # v2.3.1 with: results_file: results.sarif results_format: sarif diff --git a/.vsts-ci/linux.yml b/.vsts-ci/linux.yml index 57c60bc25a7..f362c6c2313 100644 --- a/.vsts-ci/linux.yml +++ b/.vsts-ci/linux.yml @@ -22,6 +22,7 @@ trigger: exclude: - .vsts-ci/misc-analysis.yml - .github/ISSUE_TEMPLATE/* + - .github/workflows/* - .dependabot/config.yml - test/perf/* pr: @@ -36,6 +37,7 @@ pr: exclude: - .dependabot/config.yml - .github/ISSUE_TEMPLATE/* + - .github/workflows/* - .vsts-ci/misc-analysis.yml - .vsts-ci/windows.yml - .vsts-ci/windows/* diff --git a/.vsts-ci/mac.yml b/.vsts-ci/mac.yml index 4f5e999a335..11c5a51aeba 100644 --- a/.vsts-ci/mac.yml +++ b/.vsts-ci/mac.yml @@ -14,6 +14,7 @@ trigger: - tools/releaseBuild/**/* - .vsts-ci/misc-analysis.yml - .github/ISSUE_TEMPLATE/* + - .github/workflows/* - .dependabot/config.yml - test/perf/* pr: @@ -28,6 +29,7 @@ pr: exclude: - .dependabot/config.yml - .github/ISSUE_TEMPLATE/* + - .github/workflows/* - .vsts-ci/misc-analysis.yml - .vsts-ci/windows.yml - .vsts-ci/windows/* diff --git a/.vsts-ci/windows.yml b/.vsts-ci/windows.yml index c3a39647852..86843fe29ae 100644 --- a/.vsts-ci/windows.yml +++ b/.vsts-ci/windows.yml @@ -13,6 +13,7 @@ trigger: exclude: - .vsts-ci/misc-analysis.yml - .github/ISSUE_TEMPLATE/* + - .github/workflows/* - .dependabot/config.yml - test/perf/* pr: @@ -27,6 +28,7 @@ pr: exclude: - .dependabot/config.yml - .github/ISSUE_TEMPLATE/* + - .github/workflows/* - .vsts-ci/misc-analysis.yml - tools/cgmanifest.json - LICENSE.txt