diff --git a/.github/workflows/backstage-catalog-helper.yml b/.github/workflows/backstage-catalog-helper.yml index 2ed8456..65063b6 100644 --- a/.github/workflows/backstage-catalog-helper.yml +++ b/.github/workflows/backstage-catalog-helper.yml @@ -25,9 +25,10 @@ jobs: app_id: ${{ secrets.SRE_BOT_RW_APP_ID }} private_key: ${{ secrets.SRE_BOT_RW_PRIVATE_KEY }} - name: Create pull request - uses: peter-evans/create-pull-request@v3 + uses: peter-evans/create-pull-request@v7 with: token: ${{ steps.generate_token.outputs.token}} + sign-commits: true commit-message: 'Add catalog-info.yaml' branch: 'backstage/catalog-info' title: 'Add catalog-info.yaml' diff --git a/.github/workflows/ossf-scorecard.yml b/.github/workflows/ossf-scorecard.yml index 3577ccd..39bd5ac 100644 --- a/.github/workflows/ossf-scorecard.yml +++ b/.github/workflows/ossf-scorecard.yml @@ -25,7 +25,7 @@ jobs: persist-credentials: false - name: "Run analysis" - uses: ossf/scorecard-action@fdeb02dc9c3fb721c82a431b2708514aca13dbeb + uses: ossf/scorecard-action@6c4912ed9e5f80cfda40164b92753f21f0892cab with: results_file: ossf-results.json results_format: json