From 378493c6e3ffe75df306039ea934f5d62b812517 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 25 May 2026 12:30:45 +0000 Subject: [PATCH] build(deps): bump the workflows group with 10 updates Bumps the workflows group with 10 updates: | Package | From | To | | --- | --- | --- | | [actions/checkout](https://github.com/actions/checkout) | `ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493` | `900f2210b1d28bbbd0bd22d17926b9e224e8f231` | | [actions/create-github-app-token](https://github.com/actions/create-github-app-token) | `3.1.1` | `3.2.0` | | [ytanikin/pr-conventional-commits](https://github.com/ytanikin/pr-conventional-commits) | `1.5.1` | `1.5.2` | | [launchbynttdata/launch-workflows](https://github.com/launchbynttdata/launch-workflows) | `0.14.2` | `0.15.4` | | [actions/cache](https://github.com/actions/cache) | `5.0.3` | `5.0.5` | | [astral-sh/setup-uv](https://github.com/astral-sh/setup-uv) | `7.3.1` | `8.1.0` | | [MishaKav/pytest-coverage-comment](https://github.com/mishakav/pytest-coverage-comment) | `1.6.0` | `1.7.2` | | [aws-actions/configure-aws-credentials](https://github.com/aws-actions/configure-aws-credentials) | `6.0.0` | `6.1.1` | | [azure/login](https://github.com/azure/login) | `2.3.0` | `3.0.0` | | [gruntwork-io/terragrunt-action](https://github.com/gruntwork-io/terragrunt-action) | `3.1.0` | `3.4.0` | Updates `actions/checkout` from ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 to 900f2210b1d28bbbd0bd22d17926b9e224e8f231 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493...900f2210b1d28bbbd0bd22d17926b9e224e8f231) Updates `actions/create-github-app-token` from 3.1.1 to 3.2.0 - [Release notes](https://github.com/actions/create-github-app-token/releases) - [Changelog](https://github.com/actions/create-github-app-token/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/create-github-app-token/compare/1b10c78c7865c340bc4f6099eb2f838309f1e8c3...bcd2ba49218906704ab6c1aa796996da409d3eb1) Updates `ytanikin/pr-conventional-commits` from 1.5.1 to 1.5.2 - [Release notes](https://github.com/ytanikin/pr-conventional-commits/releases) - [Commits](https://github.com/ytanikin/pr-conventional-commits/compare/1.5.1...1.5.2) Updates `launchbynttdata/launch-workflows` from 0.14.2 to 0.15.4 - [Release notes](https://github.com/launchbynttdata/launch-workflows/releases) - [Commits](https://github.com/launchbynttdata/launch-workflows/compare/0.14.2...0.15.4) Updates `actions/cache` from 5.0.3 to 5.0.5 - [Release notes](https://github.com/actions/cache/releases) - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md) - [Commits](https://github.com/actions/cache/compare/cdf6c1fa76f9f475f3d7449005a359c84ca0f306...27d5ce7f107fe9357f9df03efb73ab90386fccae) Updates `astral-sh/setup-uv` from 7.3.1 to 8.1.0 - [Release notes](https://github.com/astral-sh/setup-uv/releases) - [Commits](https://github.com/astral-sh/setup-uv/compare/v7.3.1...08807647e7069bb48b6ef5acd8ec9567f424441b) Updates `MishaKav/pytest-coverage-comment` from 1.6.0 to 1.7.2 - [Release notes](https://github.com/mishakav/pytest-coverage-comment/releases) - [Changelog](https://github.com/MishaKav/pytest-coverage-comment/blob/main/CHANGELOG.md) - [Commits](https://github.com/mishakav/pytest-coverage-comment/compare/26f986d2599c288bb62f623d29c2da98609e9cd4...dd5b80bde6d16941f336518e92929e89069d8451) Updates `aws-actions/configure-aws-credentials` from 6.0.0 to 6.1.1 - [Release notes](https://github.com/aws-actions/configure-aws-credentials/releases) - [Changelog](https://github.com/aws-actions/configure-aws-credentials/blob/main/CHANGELOG.md) - [Commits](https://github.com/aws-actions/configure-aws-credentials/compare/8df5847569e6427dd6c4fb1cf565c83acfa8afa7...d979d5b3a71173a29b74b5b88418bfda9437d885) Updates `azure/login` from 2.3.0 to 3.0.0 - [Release notes](https://github.com/azure/login/releases) - [Commits](https://github.com/azure/login/compare/a457da9ea143d694b1b9c7c869ebb04ebe844ef5...532459ea530d8321f2fb9bb10d1e0bcf23869a43) Updates `gruntwork-io/terragrunt-action` from 3.1.0 to 3.4.0 - [Release notes](https://github.com/gruntwork-io/terragrunt-action/releases) - [Commits](https://github.com/gruntwork-io/terragrunt-action/compare/5e86476ca61eaf74adb9c0525745f29f921f2199...4ed5b7344c80315e5357f28f36159fc980bc2d5a) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: 900f2210b1d28bbbd0bd22d17926b9e224e8f231 dependency-type: direct:production dependency-group: workflows - dependency-name: actions/create-github-app-token dependency-version: 3.2.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: workflows - dependency-name: ytanikin/pr-conventional-commits dependency-version: 1.5.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: workflows - dependency-name: launchbynttdata/launch-workflows dependency-version: 0.15.4 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: workflows - dependency-name: actions/cache dependency-version: 5.0.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: workflows - dependency-name: astral-sh/setup-uv dependency-version: 8.1.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: workflows - dependency-name: MishaKav/pytest-coverage-comment dependency-version: 1.7.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: workflows - dependency-name: aws-actions/configure-aws-credentials dependency-version: 6.1.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: workflows - dependency-name: azure/login dependency-version: 3.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: workflows - dependency-name: gruntwork-io/terragrunt-action dependency-version: 3.4.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: workflows ... Signed-off-by: dependabot[bot] --- .github/workflows/lint.yml | 2 +- .../workflows/reusable-github-matrix-tg.yml | 2 +- .../reusable-pr-automated-approvals.yml | 4 +-- .../reusable-pr-conventional-commit-title.yml | 6 ++-- .../reusable-pr-dependabot-automerge.yml | 2 +- .../workflows/reusable-pr-label-by-branch.yml | 6 ++-- .../workflows/reusable-python-uv-pytest.yml | 10 +++---- .../reusable-terraform-check-aws.yml | 18 +++++------ .../reusable-terraform-check-azure.yml | 18 +++++------ .../workflows/reusable-terraform-check.yml | 30 +++++++++---------- .../reusable-terragrunt-deploy-aws.yml | 10 +++---- .../reusable-terragrunt-deploy-azure.yml | 10 +++---- ...usable-terragrunt-deploy-ephemeral-aws.yml | 10 +++---- .../workflows/reusable-terragrunt-deploy.yml | 22 +++++++------- ...sable-terragrunt-destroy-ephemeral-aws.yml | 8 ++--- .../reusable-terragrunt-plan-only-aws.yml | 8 ++--- .../reusable-terragrunt-plan-only-azure.yml | 8 ++--- .../reusable-terragrunt-plan-only.yml | 16 +++++----- .../reusable-terragrunt-versions.yml | 2 +- .../reusable-update-from-skeleton.yml | 12 ++++---- 20 files changed, 102 insertions(+), 102 deletions(-) diff --git a/.github/workflows/lint.yml b/.github/workflows/lint.yml index 3a312d9..922e622 100644 --- a/.github/workflows/lint.yml +++ b/.github/workflows/lint.yml @@ -15,7 +15,7 @@ jobs: contents: read steps: - - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + - uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Check documentation exists shell: python diff --git a/.github/workflows/reusable-github-matrix-tg.yml b/.github/workflows/reusable-github-matrix-tg.yml index ea253de..fa8e591 100644 --- a/.github/workflows/reusable-github-matrix-tg.yml +++ b/.github/workflows/reusable-github-matrix-tg.yml @@ -28,7 +28,7 @@ jobs: matrix: ${{ steps.build-matrix.outputs.matrix }} steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Build Environment Matrix id: build-matrix diff --git a/.github/workflows/reusable-pr-automated-approvals.yml b/.github/workflows/reusable-pr-automated-approvals.yml index 67bd7ea..d87d80b 100644 --- a/.github/workflows/reusable-pr-automated-approvals.yml +++ b/.github/workflows/reusable-pr-automated-approvals.yml @@ -115,14 +115,14 @@ jobs: - name: Get Approver Alpha Token id: approver-alpha-token - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.approver_alpha_app_id }} private-key: ${{ secrets.LAUNCH_APPROVER_ALPHA_KEY }} - name: Get Approver Bravo Token id: approver-bravo-token - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.approver_bravo_app_id }} private-key: ${{ secrets.LAUNCH_APPROVER_BRAVO_KEY }} diff --git a/.github/workflows/reusable-pr-conventional-commit-title.yml b/.github/workflows/reusable-pr-conventional-commit-title.yml index 98bbf53..1cb56c9 100644 --- a/.github/workflows/reusable-pr-conventional-commit-title.yml +++ b/.github/workflows/reusable-pr-conventional-commit-title.yml @@ -133,7 +133,7 @@ jobs: - name: PR Conventional Commit Validation id: pr-validation - uses: ytanikin/pr-conventional-commits@1.5.1 + uses: ytanikin/pr-conventional-commits@1.5.2 with: task_types: ${{ inputs.task_types }} scope_types: ${{ inputs.scope_types }} @@ -206,7 +206,7 @@ jobs: - id: set-status-check name: Set Status Check if: ${{ inputs.comment_on_failure }} - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Conventional Commit PR Title" status: ${{ steps.pr-validation.outcome == 'success' && 'success' || @@ -218,7 +218,7 @@ jobs: - id: set-status-check-legacy name: Set Legacy Check if: ${{ inputs.comment_on_failure }} - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Label Pull Request / Label Pull Request" status: ${{ steps.pr-validation.outcome == 'success' && 'success' || diff --git a/.github/workflows/reusable-pr-dependabot-automerge.yml b/.github/workflows/reusable-pr-dependabot-automerge.yml index affe9a4..89784bb 100644 --- a/.github/workflows/reusable-pr-dependabot-automerge.yml +++ b/.github/workflows/reusable-pr-dependabot-automerge.yml @@ -31,7 +31,7 @@ jobs: # Dependabot no longer owns the PR and subsequent actions runs that would otherwise be # skipped for Dependabot-authored PRs (release on merge to main) will run as expected. - id: get-app-token - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.skeleton_update_app_id }} private-key: ${{ secrets.LAUNCH_SKELETON_UPDATE_KEY }} diff --git a/.github/workflows/reusable-pr-label-by-branch.yml b/.github/workflows/reusable-pr-label-by-branch.yml index 14e46df..711ef6e 100644 --- a/.github/workflows/reusable-pr-label-by-branch.yml +++ b/.github/workflows/reusable-pr-label-by-branch.yml @@ -21,7 +21,7 @@ jobs: issues: write runs-on: ubuntu-latest steps: - - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + - uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Configure missing labels env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} @@ -39,7 +39,7 @@ jobs: pull-requests: write runs-on: ubuntu-latest steps: - - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + - uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 with: fetch-depth: 0 - name: Check prerequisites for auto-labeling @@ -79,7 +79,7 @@ jobs: rm first-time-comment.md - - uses: launchbynttdata/launch-workflows/.github/actions/remove-dependabot-labels@0.14.2 + - uses: launchbynttdata/launch-workflows/.github/actions/remove-dependabot-labels@0.15.4 if: ${{ inputs.remove_dependabot_labels }} id: remove-dependabot-labels with: diff --git a/.github/workflows/reusable-python-uv-pytest.yml b/.github/workflows/reusable-python-uv-pytest.yml index ec2f674..0662436 100644 --- a/.github/workflows/reusable-python-uv-pytest.yml +++ b/.github/workflows/reusable-python-uv-pytest.yml @@ -49,10 +49,10 @@ jobs: matrix: python-version: [ "${{ inputs.python-version }}" ] steps: - - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + - uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Restore cached asdf tools - uses: actions/cache/restore@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + uses: actions/cache/restore@27d5ce7f107fe9357f9df03efb73ab90386fccae if: ${{ inputs.asdf-install }} id: cache with: @@ -64,7 +64,7 @@ jobs: uses: asdf-vm/actions/install@b7bcd026f18772e44fe1026d729e1611cc435d47 - name: Cache asdf tools - uses: actions/cache/save@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + uses: actions/cache/save@27d5ce7f107fe9357f9df03efb73ab90386fccae id: save-cache if: ${{ inputs.asdf-install && steps.cache.outputs.cache-hit != 'true' }} with: @@ -72,7 +72,7 @@ jobs: key: ${{ runner.os }}-tool-versions-${{ hashFiles('.tool-versions') }} - name: Set up Python ${{ matrix.python-version }} - uses: astral-sh/setup-uv@5a095e7a2014a4212f075830d4f7277575a9d098 + uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b with: python-version: ${{ matrix.python-version }} @@ -102,7 +102,7 @@ jobs: - name: Report coverage if: ${{ inputs.report-coverage }} - uses: MishaKav/pytest-coverage-comment@26f986d2599c288bb62f623d29c2da98609e9cd4 + uses: MishaKav/pytest-coverage-comment@dd5b80bde6d16941f336518e92929e89069d8451 with: pytest-xml-coverage-path: ./htmlcov/coverage.xml title: Coverage report for Python ${{ matrix.python-version }} diff --git a/.github/workflows/reusable-terraform-check-aws.yml b/.github/workflows/reusable-terraform-check-aws.yml index 2c5c023..e219b9e 100644 --- a/.github/workflows/reusable-terraform-check-aws.yml +++ b/.github/workflows/reusable-terraform-check-aws.yml @@ -33,20 +33,20 @@ jobs: runs-on: ubuntu-latest steps: - id: get-app-token - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.status_check_app_id }} private-key: ${{ secrets.LAUNCH_STATUS_CHECK_KEY }} - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Setup asdf # We use the 'setup' variant of this action, because we have some custom behavior in # our .tool-versions file and Makefile to install plugins from outside the default registry. uses: asdf-vm/actions/setup@b7bcd026f18772e44fe1026d729e1611cc435d47 - - uses: actions/cache/restore@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + - uses: actions/cache/restore@27d5ce7f107fe9357f9df03efb73ab90386fccae # If we've cached the asdf tools, restore them based on the hash of the .tool-versions file. name: Restore cached asdf tools id: cache @@ -69,7 +69,7 @@ jobs: git config user.email "noreply@launch.nttdata.com" make configure - - uses: actions/cache/save@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + - uses: actions/cache/save@27d5ce7f107fe9357f9df03efb73ab90386fccae # If we didn't restore the asdf tools, save them based on the hash of the .tool-versions file. id: save-cache name: Cache asdf tools @@ -79,7 +79,7 @@ jobs: key: ${{ runner.os }}-tool-versions-${{ hashFiles('.tool-versions') }} - name: "Set Terraform Lint status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Lint" status: "pending" @@ -93,7 +93,7 @@ jobs: - name: "Update Terraform Lint status" if: always() && steps.lint.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Lint" status: ${{ steps.lint.outcome == 'success' && 'success' || steps.lint.outcome @@ -103,7 +103,7 @@ jobs: - id: aws-login name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ inputs.assume_role_arn }} role-session-name: ${{ github.run_id }} @@ -124,7 +124,7 @@ jobs: find examples -type f -name "provider.tf" -mindepth 2 -maxdepth 2 -exec bash -c 'grep -vE "profile\s=" "$1" > $1.tmp && mv $1.tmp $1' bash {} \; - name: "Set Terraform Tests status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Tests" status: "pending" @@ -138,7 +138,7 @@ jobs: - name: "Update Terraform Tests status" if: always() && steps.test.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Tests" status: ${{ steps.test.outcome == 'success' && 'success' || steps.test.outcome diff --git a/.github/workflows/reusable-terraform-check-azure.yml b/.github/workflows/reusable-terraform-check-azure.yml index 64e3f2a..2001f8f 100644 --- a/.github/workflows/reusable-terraform-check-azure.yml +++ b/.github/workflows/reusable-terraform-check-azure.yml @@ -28,20 +28,20 @@ jobs: runs-on: ubuntu-latest steps: - id: get-app-token - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.status_check_app_id }} private-key: ${{ secrets.LAUNCH_STATUS_CHECK_KEY }} - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Setup asdf # We use the 'setup' variant of this action, because we have some custom behavior in # our .tool-versions file and Makefile to install plugins from outside the default registry. uses: asdf-vm/actions/setup@b7bcd026f18772e44fe1026d729e1611cc435d47 - - uses: actions/cache/restore@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + - uses: actions/cache/restore@27d5ce7f107fe9357f9df03efb73ab90386fccae # If we've cached the asdf tools, restore them based on the hash of the .tool-versions file. name: Restore cached asdf tools id: cache @@ -65,7 +65,7 @@ jobs: export ARM_SUBSCRIPTION_ID="$TERRAFORM_CHECK_AZURE_SUBSCRIPTION_ID" make configure - - uses: actions/cache/save@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + - uses: actions/cache/save@27d5ce7f107fe9357f9df03efb73ab90386fccae # If we didn't restore the asdf tools, save them based on the hash of the .tool-versions file. id: save-cache name: Cache asdf tools @@ -75,7 +75,7 @@ jobs: key: ${{ runner.os }}-tool-versions-${{ hashFiles('.tool-versions') }} - name: "Set Terraform Lint status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Lint" status: "pending" @@ -89,7 +89,7 @@ jobs: - name: "Update Terraform Lint status" if: always() && steps.lint.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Lint" status: ${{ steps.lint.outcome == 'success' && 'success' || steps.lint.outcome @@ -98,14 +98,14 @@ jobs: github_token: ${{ steps.get-app-token.outputs.token }} - name: Azure login - uses: azure/login@a457da9ea143d694b1b9c7c869ebb04ebe844ef5 + uses: azure/login@532459ea530d8321f2fb9bb10d1e0bcf23869a43 with: client-id: ${{ secrets.TERRAFORM_CHECK_AZURE_CLIENT_ID }} tenant-id: ${{ secrets.TERRAFORM_CHECK_AZURE_TENANT_ID }} subscription-id: ${{ secrets.TERRAFORM_CHECK_AZURE_SUBSCRIPTION_ID }} - name: "Set Terraform Tests status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Tests" status: "pending" @@ -119,7 +119,7 @@ jobs: - name: "Update Terraform Tests status" if: always() && steps.test.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Tests" status: ${{ steps.test.outcome == 'success' && 'success' || steps.test.outcome diff --git a/.github/workflows/reusable-terraform-check.yml b/.github/workflows/reusable-terraform-check.yml index 86e6f20..daab51f 100644 --- a/.github/workflows/reusable-terraform-check.yml +++ b/.github/workflows/reusable-terraform-check.yml @@ -141,7 +141,7 @@ jobs: steps: - id: checkout name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - id: dependencies name: Setup asdf @@ -150,7 +150,7 @@ jobs: uses: asdf-vm/actions/setup@b7bcd026f18772e44fe1026d729e1611cc435d47 - id: cache-restore - uses: actions/cache/restore@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + uses: actions/cache/restore@27d5ce7f107fe9357f9df03efb73ab90386fccae # If we've cached the asdf tools, restore them based on the hash of the .tool-versions file. name: Restore cached asdf tools with: @@ -172,7 +172,7 @@ jobs: make configure - id: save-cache - uses: actions/cache/save@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + uses: actions/cache/save@27d5ce7f107fe9357f9df03efb73ab90386fccae name: Cache asdf tools # If we didn't restore the asdf tools, save them based on the hash of the .tool-versions file. if: steps.cache-restore.outputs.cache-hit != 'true' @@ -182,7 +182,7 @@ jobs: - id: set-lint-pending name: "Set Terraform Lint status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Lint" status: "pending" @@ -198,7 +198,7 @@ jobs: - id: update-lint-status name: "Update Terraform Lint status" if: always() && steps.lint.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Lint" status: ${{ steps.lint.outcome == 'success' && 'success' || steps.lint.outcome @@ -214,7 +214,7 @@ jobs: steps: - id: checkout name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - id: dependencies name: Setup asdf @@ -223,7 +223,7 @@ jobs: uses: asdf-vm/actions/setup@b7bcd026f18772e44fe1026d729e1611cc435d47 - id: cache-restore - uses: actions/cache/restore@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + uses: actions/cache/restore@27d5ce7f107fe9357f9df03efb73ab90386fccae # If we've cached the asdf tools, restore them based on the hash of the .tool-versions file. name: Restore cached asdf tools with: @@ -255,7 +255,7 @@ jobs: make configure - id: save-cache - uses: actions/cache/save@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + uses: actions/cache/save@27d5ce7f107fe9357f9df03efb73ab90386fccae name: Cache asdf tools # If we didn't restore the asdf tools, save them based on the hash of the .tool-versions file. if: steps.cache-restore.outputs.cache-hit != 'true' @@ -266,7 +266,7 @@ jobs: - id: configure-aws-credentials name: Configure AWS credentials if: needs.validate-inputs.outputs.auth_aws == 'true' - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ inputs.aws_assume_role_arn }} role-session-name: ${{ github.run_id }} @@ -292,7 +292,7 @@ jobs: - id: azure-login name: Azure login if: needs.validate-inputs.outputs.auth_azure == 'true' - uses: azure/login@a457da9ea143d694b1b9c7c869ebb04ebe844ef5 + uses: azure/login@532459ea530d8321f2fb9bb10d1e0bcf23869a43 with: client-id: ${{ secrets.TERRAFORM_CHECK_AZURE_CLIENT_ID }} tenant-id: ${{ secrets.TERRAFORM_CHECK_AZURE_TENANT_ID }} @@ -301,7 +301,7 @@ jobs: - id: github-app-token name: Create GitHub App Token if: needs.validate-inputs.outputs.auth_github == 'true' - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.github_app_id }} private-key: ${{ secrets.TERRAFORM_CHECK_GITHUB_APP_SECRET }} @@ -310,7 +310,7 @@ jobs: - id: set-tests-pending name: "Set Terraform Tests status to pending" continue-on-error: true - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Tests" status: "pending" @@ -332,7 +332,7 @@ jobs: name: "Update Terraform Tests status" if: always() && steps.test.outcome != 'skipped' continue-on-error: true - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terraform Tests" status: ${{ steps.test.outcome == 'success' && 'success' || steps.test.outcome @@ -352,7 +352,7 @@ jobs: - id: update-legacy-status-checks-aws name: "Add AWS Legacy Status Check" if: startsWith(github.event.repository.name, 'tf-aws-') - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Check AWS Terraform Code / Check AWS Terraform Code" status: "success" @@ -364,7 +364,7 @@ jobs: - id: update-legacy-status-checks-azure name: "Add Azure Legacy Status Check" if: startsWith(github.event.repository.name, 'tf-az') - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Check Azure Terraform Code / Check Azure Terraform Code" status: "success" diff --git a/.github/workflows/reusable-terragrunt-deploy-aws.yml b/.github/workflows/reusable-terragrunt-deploy-aws.yml index f97f7d6..4049c54 100644 --- a/.github/workflows/reusable-terragrunt-deploy-aws.yml +++ b/.github/workflows/reusable-terragrunt-deploy-aws.yml @@ -91,7 +91,7 @@ jobs: terraform_outputs: ${{ steps.set-outputs.outputs.terraform_outputs }} steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: "Validate GitHub Environment" run: | @@ -100,7 +100,7 @@ jobs: exit $raised - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ vars.DEPLOY_ROLE_ARN }} role-session-name: ${{ github.run_id }} @@ -117,14 +117,14 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: Plan id: plan - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: AWS_REGION: ${{ inputs.region }} INPUT_PRE_EXEC_0: | @@ -148,7 +148,7 @@ jobs: inputs.env_id }}.tfplan" - name: Deploy - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: AWS_REGION: ${{ inputs.region }} INPUT_PRE_EXEC_0: | diff --git a/.github/workflows/reusable-terragrunt-deploy-azure.yml b/.github/workflows/reusable-terragrunt-deploy-azure.yml index f5d880a..ba7fc4a 100644 --- a/.github/workflows/reusable-terragrunt-deploy-azure.yml +++ b/.github/workflows/reusable-terragrunt-deploy-azure.yml @@ -92,10 +92,10 @@ jobs: terraform_outputs: ${{ steps.set-outputs.outputs.terraform_outputs }} steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Azure Login - uses: azure/login@a457da9ea143d694b1b9c7c869ebb04ebe844ef5 + uses: azure/login@532459ea530d8321f2fb9bb10d1e0bcf23869a43 with: client-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_CLIENT_ID }} tenant-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_TENANT_ID }} @@ -110,14 +110,14 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: Plan id: plan - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: INPUT_PRE_EXEC_0: | ${{ inputs.before_plan_commands }} @@ -139,7 +139,7 @@ jobs: inputs.env_id }}.tfplan" - name: Deploy - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: INPUT_PRE_EXEC_0: | ${{ inputs.before_deploy_commands }} diff --git a/.github/workflows/reusable-terragrunt-deploy-ephemeral-aws.yml b/.github/workflows/reusable-terragrunt-deploy-ephemeral-aws.yml index 416b464..0455250 100644 --- a/.github/workflows/reusable-terragrunt-deploy-ephemeral-aws.yml +++ b/.github/workflows/reusable-terragrunt-deploy-ephemeral-aws.yml @@ -85,10 +85,10 @@ jobs: terraform_outputs_json: ${{ steps.set-outputs.outputs.terraform_outputs_json }} steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ inputs.assume_role_arn }} role-session-name: ${{ github.run_id }} @@ -105,14 +105,14 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: Plan id: plan - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: AWS_REGION: ${{ inputs.region }} INPUT_PRE_EXEC_0: | @@ -138,7 +138,7 @@ jobs: - name: Deploy id: deploy - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: AWS_REGION: ${{ inputs.region }} INPUT_PRE_EXEC_0: | diff --git a/.github/workflows/reusable-terragrunt-deploy.yml b/.github/workflows/reusable-terragrunt-deploy.yml index 5dc2b4b..1db9b83 100644 --- a/.github/workflows/reusable-terragrunt-deploy.yml +++ b/.github/workflows/reusable-terragrunt-deploy.yml @@ -201,11 +201,11 @@ jobs: terraform_outputs: ${{ steps.set-outputs.outputs.terraform_outputs }} steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Configure AWS credentials if: needs.validate-inputs.outputs.auth_aws == 'true' - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ inputs.aws_assume_role_arn }} role-session-name: ${{ github.run_id }} @@ -213,7 +213,7 @@ jobs: - name: Azure Login if: needs.validate-inputs.outputs.auth_azure == 'true' - uses: azure/login@a457da9ea143d694b1b9c7c869ebb04ebe844ef5 + uses: azure/login@532459ea530d8321f2fb9bb10d1e0bcf23869a43 with: client-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_CLIENT_ID }} tenant-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_TENANT_ID }} @@ -257,7 +257,7 @@ jobs: - name: Create GitHub App Token id: github-app-token if: needs.validate-inputs.outputs.auth_github == 'true' - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.github_app_id }} private-key: ${{ secrets.TERRAGRUNT_DEPLOY_GITHUB_APP_SECRET }} @@ -265,13 +265,13 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: "Set Terragrunt Plan status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terragrunt Plan (${{ inputs.tg_dir }})" status: "pending" @@ -281,7 +281,7 @@ jobs: - name: Plan id: plan - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: INPUT_PRE_EXEC_0: | ${{ inputs.before_plan_commands }} @@ -310,7 +310,7 @@ jobs: - name: "Update Terragrunt Plan status" if: always() && steps.plan.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terragrunt Plan (${{ inputs.tg_dir }})" status: ${{ steps.plan.outcome == 'success' && 'success' || steps.plan.outcome @@ -320,7 +320,7 @@ jobs: github.run_id }}" - name: "Set Terragrunt Deploy status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terragrunt Deploy (${{ inputs.tg_dir }})" status: "pending" @@ -330,7 +330,7 @@ jobs: - name: Deploy id: deploy - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: INPUT_PRE_EXEC_0: | ${{ inputs.before_deploy_commands }} @@ -359,7 +359,7 @@ jobs: - name: "Update Terragrunt Deploy status" if: always() && steps.deploy.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terragrunt Deploy (${{ inputs.tg_dir }})" status: ${{ steps.deploy.outcome == 'success' && 'success' || diff --git a/.github/workflows/reusable-terragrunt-destroy-ephemeral-aws.yml b/.github/workflows/reusable-terragrunt-destroy-ephemeral-aws.yml index 5e03276..833f11e 100644 --- a/.github/workflows/reusable-terragrunt-destroy-ephemeral-aws.yml +++ b/.github/workflows/reusable-terragrunt-destroy-ephemeral-aws.yml @@ -56,10 +56,10 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ inputs.assume_role_arn }} role-session-name: ${{ github.run_id }} @@ -76,13 +76,13 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: Destroy - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: AWS_REGION: ${{ inputs.region }} INPUT_PRE_EXEC_0: | diff --git a/.github/workflows/reusable-terragrunt-plan-only-aws.yml b/.github/workflows/reusable-terragrunt-plan-only-aws.yml index ce47d86..e2f1b50 100644 --- a/.github/workflows/reusable-terragrunt-plan-only-aws.yml +++ b/.github/workflows/reusable-terragrunt-plan-only-aws.yml @@ -61,10 +61,10 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ inputs.assume_role_arn }} role-session-name: ${{ github.run_id }} @@ -81,14 +81,14 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: Plan id: plan - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: AWS_REGION: ${{ inputs.region }} INPUT_PRE_EXEC_0: | diff --git a/.github/workflows/reusable-terragrunt-plan-only-azure.yml b/.github/workflows/reusable-terragrunt-plan-only-azure.yml index 5843c1c..700f023 100644 --- a/.github/workflows/reusable-terragrunt-plan-only-azure.yml +++ b/.github/workflows/reusable-terragrunt-plan-only-azure.yml @@ -62,10 +62,10 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Azure Login - uses: azure/login@a457da9ea143d694b1b9c7c869ebb04ebe844ef5 + uses: azure/login@532459ea530d8321f2fb9bb10d1e0bcf23869a43 with: client-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_CLIENT_ID }} tenant-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_TENANT_ID }} @@ -80,14 +80,14 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: Plan id: plan - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: INPUT_PRE_EXEC_0: | ${{ inputs.before_plan_commands }} diff --git a/.github/workflows/reusable-terragrunt-plan-only.yml b/.github/workflows/reusable-terragrunt-plan-only.yml index 099fbf9..5705572 100644 --- a/.github/workflows/reusable-terragrunt-plan-only.yml +++ b/.github/workflows/reusable-terragrunt-plan-only.yml @@ -165,10 +165,10 @@ jobs: needs: validate-inputs steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: Configure AWS credentials if: needs.validate-inputs.outputs.auth_aws == 'true' - uses: aws-actions/configure-aws-credentials@8df5847569e6427dd6c4fb1cf565c83acfa8afa7 + uses: aws-actions/configure-aws-credentials@d979d5b3a71173a29b74b5b88418bfda9437d885 with: role-to-assume: ${{ inputs.aws_assume_role_arn }} role-session-name: ${{ github.run_id }} @@ -176,7 +176,7 @@ jobs: - name: Azure Login if: needs.validate-inputs.outputs.auth_azure == 'true' - uses: azure/login@a457da9ea143d694b1b9c7c869ebb04ebe844ef5 + uses: azure/login@532459ea530d8321f2fb9bb10d1e0bcf23869a43 with: client-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_CLIENT_ID }} tenant-id: ${{ secrets.TERRAGRUNT_DEPLOY_AZURE_TENANT_ID }} @@ -220,7 +220,7 @@ jobs: - name: Create GitHub App Token id: github-app-token if: needs.validate-inputs.outputs.auth_github == 'true' - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.github_app_id }} private-key: ${{ secrets.TERRAGRUNT_DEPLOY_GITHUB_APP_SECRET }} @@ -228,13 +228,13 @@ jobs: - name: Configure Mise id: configure-mise - uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/terragrunt-configure-mise@0.15.4 with: tf_version: ${{ inputs.tf_version }} tg_version: ${{ inputs.tg_version }} - name: "Set Terragrunt Plan status to pending" - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terragrunt Plan (${{ inputs.tg_dir }})" status: "pending" @@ -244,7 +244,7 @@ jobs: - name: Plan id: plan - uses: gruntwork-io/terragrunt-action@5e86476ca61eaf74adb9c0525745f29f921f2199 + uses: gruntwork-io/terragrunt-action@4ed5b7344c80315e5357f28f36159fc980bc2d5a env: INPUT_PRE_EXEC_0: | ${{ inputs.before_plan_commands }} @@ -269,7 +269,7 @@ jobs: - name: "Update Terragrunt Plan status" if: always() && steps.plan.outcome != 'skipped' - uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/update-status-check@0.15.4 with: check_name: "Terragrunt Plan (${{ inputs.tg_dir }})" status: ${{ steps.plan.outcome == 'success' && 'success' || steps.plan.outcome diff --git a/.github/workflows/reusable-terragrunt-versions.yml b/.github/workflows/reusable-terragrunt-versions.yml index a451056..280161f 100644 --- a/.github/workflows/reusable-terragrunt-versions.yml +++ b/.github/workflows/reusable-terragrunt-versions.yml @@ -28,7 +28,7 @@ jobs: tg_version: ${{ steps.tg-version.outputs.version }} steps: - name: Checkout - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 - name: "Get Terraform Version" id: tf-version diff --git a/.github/workflows/reusable-update-from-skeleton.yml b/.github/workflows/reusable-update-from-skeleton.yml index c0b62c6..f0ac443 100644 --- a/.github/workflows/reusable-update-from-skeleton.yml +++ b/.github/workflows/reusable-update-from-skeleton.yml @@ -36,21 +36,21 @@ jobs: runs-on: ubuntu-latest steps: - id: get-app-token - uses: actions/create-github-app-token@1b10c78c7865c340bc4f6099eb2f838309f1e8c3 + uses: actions/create-github-app-token@bcd2ba49218906704ab6c1aa796996da409d3eb1 with: app-id: ${{ inputs.skeleton_update_app_id }} private-key: ${{ secrets.LAUNCH_SKELETON_UPDATE_KEY }} - id: checkout name: Checkout Repository - uses: actions/checkout@ff7abcd0c3c05ccf6adc123a8cd1fd4fb30fb493 + uses: actions/checkout@900f2210b1d28bbbd0bd22d17926b9e224e8f231 with: token: ${{ steps.get-app-token.outputs.token }} - name: Setup asdf uses: asdf-vm/actions/setup@b7bcd026f18772e44fe1026d729e1611cc435d47 - - uses: actions/cache/restore@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + - uses: actions/cache/restore@27d5ce7f107fe9357f9df03efb73ab90386fccae name: Restore cached asdf tools id: cache with: @@ -63,7 +63,7 @@ jobs: git config --global user.email "41898282+github-actions[bot]@users.noreply.github.com" make configure - - uses: actions/cache/save@cdf6c1fa76f9f475f3d7449005a359c84ca0f306 + - uses: actions/cache/save@27d5ce7f107fe9357f9df03efb73ab90386fccae name: Cache asdf tools if: steps.cache.outputs.cache-hit != 'true' with: @@ -72,7 +72,7 @@ jobs: - id: setup-python name: Set up Python 3.14 - uses: astral-sh/setup-uv@cec208311dfd045dd5311c1add060b2062131d57 + uses: astral-sh/setup-uv@08807647e7069bb48b6ef5acd8ec9567f424441b with: python-version: 3.14 @@ -84,7 +84,7 @@ jobs: - id: get-repo-custom-properties name: Get Repository Custom Properties - uses: launchbynttdata/launch-workflows/.github/actions/get-custom-properties@0.15.0 + uses: launchbynttdata/launch-workflows/.github/actions/get-custom-properties@0.15.4 - id: run-updates name: Run Updates from Skeleton