Skip to content

VLN-1613: remediate checkout-below-v7#1622

Merged
Sushisource merged 1 commit into
mainfrom
camper/checkout-below-v7-43966866
Jun 26, 2026
Merged

VLN-1613: remediate checkout-below-v7#1622
Sushisource merged 1 commit into
mainfrom
camper/checkout-below-v7-43966866

Conversation

@picatz

@picatz picatz commented Jun 26, 2026

Copy link
Copy Markdown
Contributor

🏕️ This pull request was created by camper, an automated security campaign tool.

Finding

Rulecheckout-below-v7
SeverityMEDIUM
Repositorytemporalio/sdk-python
TicketVLN-1613

Summary

  • .github/workflows/ci.yml: Updated all actions/checkout usages to the requested v7.0.0 commit pin.
  • .github/workflows/release-publish.yml: Updated all actions/checkout usages to the requested v7.0.0 commit pin.
  • .github/workflows/run-bench.yml: Updated the actions/checkout usage to the requested v7.0.0 commit pin.

Instructions

  • Approve to merge this fix
  • Request changes to trigger a new remediation attempt
  • /camper rebase — rebase onto the base branch
  • /camper close — close this PR without merging
  • /camper retry — regenerate the fix from scratch against the current base

@picatz picatz requested a review from a team as a code owner June 26, 2026 22:16
@Sushisource Sushisource enabled auto-merge (squash) June 26, 2026 22:32
@Sushisource Sushisource merged commit ca62ed2 into main Jun 26, 2026
15 checks passed
@Sushisource Sushisource deleted the camper/checkout-below-v7-43966866 branch June 26, 2026 22:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants