Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:47: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:134: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:140: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:150: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:155: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:199: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:216: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:221: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:251: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:281: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:298: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:303: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:333: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:396: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:532: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:551: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:557: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:576: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/build.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/docker.yml:110: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:116: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:118: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:51: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:53: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:55: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:62: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:67: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/docker.yml:81: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/docker.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/lint.yml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/lint.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/lint.yml:33: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/lint.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/linux.yml:17: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/linux.yml/dev-next?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/linux.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/linux.yml/dev-next?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/stale.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/SagerNet/sing-box/stale.yml/dev-next?enable=pin
Warn: containerImage not pinned by hash: Dockerfile:1
Warn: containerImage not pinned by hash: Dockerfile:20
Info: 9 out of 27 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 14 third-party GitHubAction dependencies pinned
Info: 0 out of 2 containerImage dependencies pinned
Info: 6 out of 6 goCommand dependencies pinned