Warn: third-party GitHubAction not pinned by hash: .github/workflows/apix-ci.yml:51: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/apix-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/apix-ci.yml:56: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/apix-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/apix-ci.yml:59: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/apix-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/apix-ci.yml:93: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/apix-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/apix-ci.yml:109: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/apix-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/apix-ci.yml:114: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/apix-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:49: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:52: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:65: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:79: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:129: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:145: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/codegen-ci.yml:150: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/codegen-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go-ci.yml:116: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/go-ci.yml:119: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/go-ci.yml:127: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/go-ci.yml:134: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go-ci.yml:166: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go-ci.yml:186: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go-ci.yml:202: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/go-ci.yml:207: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/go-ci.yml:44: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go-ci.yml:49: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go-ci.yml:52: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go-ci.yml:67: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/go-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/hackathon-ci.yml:45: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/hackathon-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/hackathon-ci.yml:50: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/hackathon-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/hackathon-ci.yml:53: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/hackathon-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/kotlin-ci.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/kotlin-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/kotlin-ci.yml:36: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/kotlin-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/kotlin-ci.yml:53: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/kotlin-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/kotlin-ci.yml:55: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/kotlin-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/lerna-publish.yml:32: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/lerna-publish.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/lerna-publish.yml:38: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/lerna-publish.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/lerna-publish.yml:46: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/lerna-publish.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/lerna-publish.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/lerna-publish.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/p3-issue-label.yml:13: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/p3-issue-label.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:87: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:90: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:104: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:154: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:157: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/python-ci.yml:162: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/python-ci.yml:170: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/python-ci.yml:177: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:222: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:236: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:237: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:257: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/python-ci.yml:288: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/python-ci.yml:43: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:46: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci.yml:47: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-publish.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-publish.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-publish.yml:30: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-publish.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/python-publish.yml:39: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/python-publish.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release-metrics.yml:10: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/release-metrics.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release-metrics.yml:18: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/release-metrics.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release-please.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/release-please.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/required-checks-hack-ci.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/required-checks-hack-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/required-checks-hack-ci.yml:42: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/required-checks-hack-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/resources-ci.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/resources-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/resources-ci.yml:39: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/resources-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/resources-ci.yml:42: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/resources-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/triage-issue-label.yml:12: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/triage-issue-label.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:55: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:60: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:63: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:112: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:137: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:140: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:148: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:163: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:181: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:197: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tssdk-ci.yml:202: update your workflow using https://app.stepsecurity.io/secureworkflow/looker-open-source/sdk-codegen/tssdk-ci.yml/main?enable=pin
Warn: goCommand not pinned by hash: .github/workflows/go-ci.yml:58
Warn: goCommand not pinned by hash: .github/workflows/go-ci.yml:173
Warn: pipCommand not pinned by hash: .github/workflows/python-ci.yml:51
Warn: pipCommand not pinned by hash: .github/workflows/python-ci.yml:52
Warn: pipCommand not pinned by hash: .github/workflows/python-ci.yml:96
Warn: pipCommand not pinned by hash: .github/workflows/python-ci.yml:97
Warn: pipCommand not pinned by hash: .github/workflows/python-ci.yml:210
Warn: pipCommand not pinned by hash: .github/workflows/python-ci.yml:211
Warn: pipCommand not pinned by hash: .github/workflows/python-ci.yml:242
Warn: pipCommand not pinned by hash: .github/workflows/python-publish.yml:36
Info: 0 out of 48 GitHub-owned GitHubAction dependencies pinned
Info: 2 out of 31 third-party GitHubAction dependencies pinned
Info: 0 out of 2 goCommand dependencies pinned
Info: 0 out of 8 pipCommand dependencies pinned