Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/benchmark.yml:37: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/benchmark.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/benchmark.yml:41: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/benchmark.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/benchmark.yml:70: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/benchmark.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/benchmark.yml:78: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/benchmark.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:37: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:49: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:62: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:65: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:81: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:84: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:97: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/ci.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:37: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:45: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/codeql-analysis.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/compat.yaml:13: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/compat.yaml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/compat.yaml:15: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/compat.yaml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/compatibility-check-template.yml:35: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/compatibility-check-template.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/compatibility-check-template.yml:39: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/compatibility-check-template.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/compatibility-check-template.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/compatibility-check-template.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/compatibility-check-template.yml:73: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/compatibility-check-template.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/compatibility-check-template.yml:105: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/compatibility-check-template.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/downstream.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/downstream.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/downstream.yml:33: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/downstream.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/downstream.yml:52: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/downstream.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/downstream.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/downstream.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/get-contracts.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/get-contracts.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/get-contracts.yml:27: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/get-contracts.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/get-contracts.yml:48: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/get-contracts.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:38: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/release.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:44: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/release.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:69: update your workflow using https://app.stepsecurity.io/secureworkflow/onflow/cadence/release.yml/master?enable=pin
Warn: pipCommand not pinned by hash: .github/workflows/compat.yaml:22
Info: 0 out of 28 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 5 third-party GitHubAction dependencies pinned
Info: 1 out of 1 goCommand dependencies pinned
Info: 0 out of 1 pipCommand dependencies pinned