Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/SonarCloud.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/SonarCloud.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/SonarCloud.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/SonarCloud.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/SonarCloud.yml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/SonarCloud.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/SonarCloud.yml:37: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/SonarCloud.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/SonarCloud.yml:43: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/SonarCloud.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/SonarCloud.yml:48: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/SonarCloud.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:21: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/build.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:35: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/build.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:44: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:46: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:50: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:63: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:76: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:19: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:23: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:32: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:46: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:52: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:64: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:72: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:76: update your workflow using https://app.stepsecurity.io/secureworkflow/danstis/rmstale/release.yml/main?enable=pin
Warn: containerImage not pinned by hash: .devcontainer/Dockerfile:3
Warn: downloadThenRun not pinned by hash: .devcontainer/Dockerfile:41-56
Info: 0 out of 13 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 13 third-party GitHubAction dependencies pinned
Info: 0 out of 1 containerImage dependencies pinned
Info: 1 out of 1 goCommand dependencies pinned
Info: 0 out of 1 downloadThenRun dependencies pinned