Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:41: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:46: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:55: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:68: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/dockerfiles.yml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/dockerfiles.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/dockerfiles.yml:36: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/dockerfiles.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:153: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:158: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:176: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:210: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:215: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:223: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/go.yml:257: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:49: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:54: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:63: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/go.yml:86: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:106: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:111: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/go.yml:120: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/go.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:42: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:56: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:70: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:84: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:98: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:112: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:126: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:140: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:154: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/readme-stars.yml:168: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/readme-stars.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:170: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:175: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:184: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:22: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:27: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:36: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:68: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:73: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:82: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:117: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:122: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:131: update your workflow using https://app.stepsecurity.io/secureworkflow/obalunenko/advent-of-code/release.yml/master?enable=pin
Warn: containerImage not pinned by hash: build/docker/go-tools/Dockerfile:1
Warn: downloadThenRun not pinned by hash: .github/workflows/go.yml:253
Info: 0 out of 29 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 15 third-party GitHubAction dependencies pinned
Info: 0 out of 1 containerImage dependencies pinned
Info: 1 out of 1 goCommand dependencies pinned
Info: 0 out of 1 downloadThenRun dependencies pinned