Skip to content

Publish Immutable actions #1019

@Fdawgs

Description

@Fdawgs

Is your feature request related to a problem? Please describe.
The majority of the official actions/ actions all publish immutable actions (see actions/checkout for example), it'd be great if this one could also be so we don't have to pin to the full length commit SHA if we want immutability.

Describe the solution you'd like

  1. Add an immutable action publish workflow
  2. Add the action to codeql's immutable actions list so it doesn't get flagged by the CWE-829 rule

Describe alternatives you've considered
N/A

Additional context

Happy to make the PRs for this.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions