Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:168: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:188: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:205: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:213: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:224: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-packages.yml:232: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:14: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-packages.yml:67: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:78: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:91: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:106: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-packages.yml:136: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-packages.yml:146: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/build-packages.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci-pr.yml:13: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/ci-pr.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci-pr.yml:19: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/ci-pr.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci-push.yml:13: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/ci-push.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci-push.yml:19: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/ci-push.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:43: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:47: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:61: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql.yml:74: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/codeql.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/pr-naming-rules.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/els0r/goProbe/pr-naming-rules.yml/main?enable=pin
Warn: containerImage not pinned by hash: .devcontainer/Dockerfile:1: pin your Docker image by updating mcr.microsoft.com/devcontainers/go:1.23-bullseye to mcr.microsoft.com/devcontainers/go:1.23-bullseye@sha256:97da4fd204f27fa7e0b3a8212e2b2976749629306ac99320b811c3d3cc809d63
Warn: goCommand not pinned by hash: .devcontainer/Dockerfile:19
Warn: downloadThenRun not pinned by hash: .devcontainer/Dockerfile:20
Info: 0 out of 20 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 3 third-party GitHubAction dependencies pinned
Info: 0 out of 1 goCommand dependencies pinned
Info: 0 out of 1 downloadThenRun dependencies pinned
Info: 0 out of 1 containerImage dependencies pinned