diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index e325d1f..73de063 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -27,7 +27,7 @@ jobs: fetch-depth: 0 - name: TruffleHog Secret Scan - uses: trufflesecurity/trufflehog@041f07e9df901a1038a528e5525b0226d04dd5ea # pin to specific SHA + uses: trufflesecurity/trufflehog@586f66d7886cd0b037c7c245d4a6e34ef357ab10 # pin to specific SHA with: path: ./ extra_args: --only-verified