diff --git a/.github/workflows/atomic.yaml b/.github/workflows/atomic.yaml index e98074d..0fb8192 100644 --- a/.github/workflows/atomic.yaml +++ b/.github/workflows/atomic.yaml @@ -59,7 +59,7 @@ jobs: ${{ env.IMAGE_NAME }} - name: Dagger Build and Publish (PR) # yamllint disable-line rule:line-length - uses: dagger/dagger-for-github@2f17ffec279ab28121a7030db49c2ab32378de2e # v7 + uses: dagger/dagger-for-github@847ae4458ef34fe9b5f566655957bde6d4891112 # v7 env: COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }} COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }} @@ -81,7 +81,7 @@ jobs: args: --source=. --registry="${{ matrix.registry }}" --org="${{ matrix.org }}" --variant="${{ matrix.variant }}" --suffix="${{ matrix.suffix }}" --tag="${{ matrix.version }}" --additional-labels="$(printf "${{ steps.generate_labels.outputs.labels }}" | xargs -I {} echo -n \"{}\", | sed 's/,*$//' )" publish-and-sign --image-registry="ghcr.io" --image-name="${{ env.IMAGE_NAME }}" --repository="containers" --username="${{ github.repository_owner }}" --secret=env:GITHUB_TOKEN --additional-tags="pr-${{ github.event.number }}-${{ matrix.version}},pr-${{ github.event.number }}-${{ matrix.version}}-${{ steps.sha_short.outputs.sha_short }}" --skip-default-tags --cosign-private-key=env:COSIGN_PRIVATE_KEY --cosign-password=env:COSIGN_PASSWORD - name: Dagger Build and Publish (main) # yamllint disable-line rule:line-length - uses: dagger/dagger-for-github@2f17ffec279ab28121a7030db49c2ab32378de2e # v7 + uses: dagger/dagger-for-github@847ae4458ef34fe9b5f566655957bde6d4891112 # v7 env: COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }} COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }} diff --git a/.github/workflows/reusable-toolbox.yaml b/.github/workflows/reusable-toolbox.yaml index bc00125..99a59c8 100644 --- a/.github/workflows/reusable-toolbox.yaml +++ b/.github/workflows/reusable-toolbox.yaml @@ -45,7 +45,7 @@ jobs: ${{ env.IMAGE_NAME }} - name: Dagger Build and Publish (PR) # yamllint disable-line rule:line-length - uses: dagger/dagger-for-github@2f17ffec279ab28121a7030db49c2ab32378de2e # v7 + uses: dagger/dagger-for-github@847ae4458ef34fe9b5f566655957bde6d4891112 # v7 env: COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }} COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }} @@ -64,7 +64,7 @@ jobs: args: --tag "${{ inputs.version }}" publish-and-sign --registry="ghcr.io" --image-name="${{ env.IMAGE_NAME }}" --username="${{ github.repository_owner }}" --secret=env:GITHUB_TOKEN --additional-tags="pr-${{ github.event.number }}-${{ inputs.version}},pr-${{ github.event.number }}-${{ inputs.version}}-${{ steps.sha_short.outputs.sha_short }}" --skip-default-tags --cosign-private-key=env:COSIGN_PRIVATE_KEY --cosign-password=env:COSIGN_PASSWORD - name: Dagger Build and Publish (main) # yamllint disable-line rule:line-length - uses: dagger/dagger-for-github@2f17ffec279ab28121a7030db49c2ab32378de2e # v7 + uses: dagger/dagger-for-github@847ae4458ef34fe9b5f566655957bde6d4891112 # v7 env: COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }} COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }}