Skip to content

[Should fix] README example pins v0.8.0 and locks itself out with SHA pinning #62

Description

@sbp-bvanb

Should fix (pr-reviewer): The usage example pins 030/settings-action@v0.8.0, but the settings_actions_* inputs it passes were added in v0.10.0, so they are ignored. The same example sets settings_actions_require_sha_pinning: true; once applied, GitHub rejects the example's own tag-pinned uses: line.

Fix: Pin to a SHA with a version comment, e.g. 030/settings-action@a27696394dd22683f19303883d8ef275b7287e83 # v0.10.1.

Location:


Generated by mcvs_review 3.1.0 (pr-reviewer, doc-reviewer, dependency-reviewer, github-actions-reviewer) at commit a276963.

Activity

  1. sbp-bvanb commented on Oct 10, 2026

    @sbp-bvanb
    CollaboratorAuthor

    Fixed in #72 (3898f8b): the Quickstart pins the SHA of v0.10.1.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions