diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 20600d9d9a31..29c7c68d631f 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -49,7 +49,7 @@ jobs: mergedSha: ${{ inputs.mergedSha }} merged-as-untrusted: true - - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + - uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true diff --git a/.github/workflows/codeowners-v2.yml b/.github/workflows/codeowners-v2.yml index 89908ede868d..97fcfc63bdd2 100644 --- a/.github/workflows/codeowners-v2.yml +++ b/.github/workflows/codeowners-v2.yml @@ -59,7 +59,7 @@ jobs: merged-as-untrusted: true target-as-trusted: true - - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + - uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 - uses: cachix/cachix-action@0fc020193b5a1fa3ac4575aa3a7d3aa6a35435ad # v16 with: @@ -107,7 +107,7 @@ jobs: name: Request runs-on: ubuntu-24.04-arm steps: - - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + - uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 # Important: Because we use pull_request_target, this checks out the base branch of the PR, not the PR head. # This is intentional, because we need to request the review of owners as declared in the base branch. diff --git a/.github/workflows/eval.yml b/.github/workflows/eval.yml index 71ba62cdf4c7..5999aedcb938 100644 --- a/.github/workflows/eval.yml +++ b/.github/workflows/eval.yml @@ -46,7 +46,7 @@ jobs: path: untrusted - name: Install Nix - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true @@ -166,7 +166,7 @@ jobs: path: trusted - name: Install Nix - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true @@ -243,7 +243,7 @@ jobs: merged-as-untrusted: true - name: Install Nix - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true diff --git a/.github/workflows/lint.yml b/.github/workflows/lint.yml index 4bf917d800db..0b2da1070d20 100644 --- a/.github/workflows/lint.yml +++ b/.github/workflows/lint.yml @@ -29,7 +29,7 @@ jobs: mergedSha: ${{ inputs.mergedSha }} merged-as-untrusted: true - - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + - uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true @@ -61,7 +61,7 @@ jobs: mergedSha: ${{ inputs.mergedSha }} merged-as-untrusted: true - - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + - uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true @@ -86,7 +86,7 @@ jobs: targetSha: ${{ inputs.targetSha }} target-as-trusted: true - - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + - uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true diff --git a/.github/workflows/reviewers.yml b/.github/workflows/reviewers.yml index bd1d8aed7204..1d518133cf6d 100644 --- a/.github/workflows/reviewers.yml +++ b/.github/workflows/reviewers.yml @@ -35,7 +35,7 @@ jobs: sparse-checkout: ci - name: Install Nix - uses: cachix/install-nix-action@17fe5fb4a23ad6cbbe47d6b3f359611ad276644c # v31 + uses: cachix/install-nix-action@f0fe604f8a612776892427721526b4c7cfb23aba # v31 with: extra_nix_config: sandbox = true