diff --git a/.github/workflows/dependabot-auto-merge.yml b/.github/workflows/dependabot-auto-merge.yml index 6768903..18c986e 100644 --- a/.github/workflows/dependabot-auto-merge.yml +++ b/.github/workflows/dependabot-auto-merge.yml @@ -8,7 +8,7 @@ permissions: jobs: auto-merge: - uses: cuioss/cuioss-organization/.github/workflows/reusable-dependabot-auto-merge.yml@fbb87b2940f43cd3c6907c194dbbd437b2a78aa4 # v0.5.0 + uses: cuioss/cuioss-organization/.github/workflows/reusable-dependabot-auto-merge.yml@c4852ae3c12a7adcbddbf140043b832ff5e6bc97 # v0.5.2 permissions: contents: write pull-requests: write diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index 03da089..1e98064 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -10,7 +10,7 @@ permissions: jobs: dependency-review: - uses: cuioss/cuioss-organization/.github/workflows/reusable-dependency-review.yml@7f9eecb85e04771d0dacfe2b102fd094558eff1d # v0.4.0 + uses: cuioss/cuioss-organization/.github/workflows/reusable-dependency-review.yml@c4852ae3c12a7adcbddbf140043b832ff5e6bc97 # v0.5.2 permissions: contents: read pull-requests: write diff --git a/.github/workflows/maven.yml b/.github/workflows/maven.yml index 34133a9..1b12adf 100644 --- a/.github/workflows/maven.yml +++ b/.github/workflows/maven.yml @@ -17,7 +17,7 @@ jobs: # Run on push events, OR on pull_request only if from a fork # This prevents duplicate runs: push handles internal branches, PR handles forks if: github.event_name != 'pull_request' || github.event.pull_request.head.repo.full_name != github.event.pull_request.base.repo.full_name - uses: cuioss/cuioss-organization/.github/workflows/reusable-maven-build.yml@7f9eecb85e04771d0dacfe2b102fd094558eff1d # v0.4.0 + uses: cuioss/cuioss-organization/.github/workflows/reusable-maven-build.yml@c4852ae3c12a7adcbddbf140043b832ff5e6bc97 # v0.5.2 secrets: SONAR_TOKEN: ${{ secrets.SONAR_TOKEN }} OSS_SONATYPE_USERNAME: ${{ secrets.OSS_SONATYPE_USERNAME }} diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index 378e01a..4a77fd8 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -17,7 +17,7 @@ jobs: if: github.event.pull_request.merged == true || github.event_name == 'workflow_dispatch' permissions: contents: write - uses: cuioss/cuioss-organization/.github/workflows/reusable-maven-release.yml@7f9eecb85e04771d0dacfe2b102fd094558eff1d # v0.4.0 + uses: cuioss/cuioss-organization/.github/workflows/reusable-maven-release.yml@c4852ae3c12a7adcbddbf140043b832ff5e6bc97 # v0.5.2 secrets: RELEASE_APP_ID: ${{ secrets.RELEASE_APP_ID }} RELEASE_APP_PRIVATE_KEY: ${{ secrets.RELEASE_APP_PRIVATE_KEY }} diff --git a/.github/workflows/scorecards.yml b/.github/workflows/scorecards.yml index 386f749..e48e06b 100644 --- a/.github/workflows/scorecards.yml +++ b/.github/workflows/scorecards.yml @@ -13,7 +13,7 @@ permissions: jobs: analysis: - uses: cuioss/cuioss-organization/.github/workflows/reusable-scorecards.yml@7f9eecb85e04771d0dacfe2b102fd094558eff1d # v0.4.0 + uses: cuioss/cuioss-organization/.github/workflows/reusable-scorecards.yml@c4852ae3c12a7adcbddbf140043b832ff5e6bc97 # v0.5.2 permissions: security-events: write id-token: write