Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/alpine.yml:24: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/alpine.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/alpine.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/alpine.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:291: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:45: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:88: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:107: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:115: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:123: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:131: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:139: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:148: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:168: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:181: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:194: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:221: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:231: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:240: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:252: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:262: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/build.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/codeql-analysis.yml:30: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/codeql-analysis.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-android.yml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-android.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-android.yml:44: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-android.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-android.yml:52: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-android.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-android.yml:83: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-android.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-android.yml:86: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-android.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-android.yml:113: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-android.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-ios.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-ios.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/device-tests-ios.yml:47: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/device-tests-ios.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/format-code.yml:18: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/format-code.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/release.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/release.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/vulnerabilities.yml:18: update your workflow using https://app.stepsecurity.io/secureworkflow/getsentry/sentry-dotnet/vulnerabilities.yml/main?enable=pin
Warn: containerImage not pinned by hash: .github/alpine/Dockerfile:3
Warn: nugetCommand not pinned by hash: .github/workflows/build.yml:161: pin your dependecies by either enabling central package management (https://learn.microsoft.com/nuget/consume-packages/Central-Package-Management) or using a lockfile (https://learn.microsoft.com/nuget/consume-packages/package-references-in-project-files#locking-dependencies)
Warn: nugetCommand not pinned by hash: .github/workflows/codeql-analysis.yml:46: pin your dependecies by either enabling central package management (https://learn.microsoft.com/nuget/consume-packages/Central-Package-Management) or using a lockfile (https://learn.microsoft.com/nuget/consume-packages/package-references-in-project-files#locking-dependencies)
Warn: nugetCommand not pinned by hash: .github/workflows/format-code.yml:29: pin your dependecies by either enabling central package management (https://learn.microsoft.com/nuget/consume-packages/Central-Package-Management) or using a lockfile (https://learn.microsoft.com/nuget/consume-packages/package-references-in-project-files#locking-dependencies)
Warn: nugetCommand not pinned by hash: .github/workflows/vulnerabilities.yml:28: pin your dependecies by either enabling central package management (https://learn.microsoft.com/nuget/consume-packages/Central-Package-Management) or using a lockfile (https://learn.microsoft.com/nuget/consume-packages/package-references-in-project-files#locking-dependencies)
Info: 3 out of 33 GitHub-owned GitHubAction dependencies pinned
Info: 7 out of 10 third-party GitHubAction dependencies pinned
Info: 0 out of 1 containerImage dependencies pinned
Info: 0 out of 4 nugetCommand dependencies pinned