Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/broken-link-checker.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/broken-link-checker.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/broken-link-checker.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/broken-link-checker.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:45: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:47: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:96: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:103: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:110: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:114: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:120: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:139: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:177: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:184: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:191: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:195: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:223: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:227: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:232: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/scorecard.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/scorecard.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/scorecard.yml:67: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/scorecard.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/scorecard.yml:76: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/scorecard.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/verify-build.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/verify-build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/verify-build.yml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/verify-build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/verify-build.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/verify-build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/verify-build.yml:44: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/verify-build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/verify-build.yml:70: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/verify-build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/verify-build.yml:72: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/verify-build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/vulnerability-scan.yml:55: update your workflow using https://app.stepsecurity.io/secureworkflow/hyperledger/fabric/vulnerability-scan.yml/main?enable=pin
Warn: containerImage not pinned by hash: images/baseos/Dockerfile:22
Warn: containerImage not pinned by hash: images/ccenv/Dockerfile:20
Warn: containerImage not pinned by hash: images/orderer/Dockerfile:24
Warn: containerImage not pinned by hash: images/orderer/Dockerfile:51
Warn: containerImage not pinned by hash: images/peer/Dockerfile:24
Warn: containerImage not pinned by hash: images/peer/Dockerfile:52
Warn: containerImage not pinned by hash: images/tools/Dockerfile:24
Warn: containerImage not pinned by hash: images/tools/Dockerfile:51
Warn: goCommand not pinned by hash: .github/workflows/broken-link-checker.yml:33
Info: 0 out of 20 GitHub-owned GitHubAction dependencies pinned
Info: 1 out of 9 third-party GitHubAction dependencies pinned
Info: 0 out of 8 containerImage dependencies pinned
Info: 0 out of 1 goCommand dependencies pinned