Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-test-app.yml:22: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/build-test-app.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-test-app.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/build-test-app.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-test-app.yml:36: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/build-test-app.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/check-licenses.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/check-licenses.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/check-licenses.yml:15: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/check-licenses.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cleanup-gov-test.yml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cleanup-gov-test.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cleanup-gov-test.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cleanup-gov-test.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cleanup-test.yml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cleanup-test.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cleanup-test.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cleanup-test.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cleanup-test.yml:76: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cleanup-test.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cleanup-test.yml:79: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cleanup-test.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cloud-tests-filter.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cloud-tests-filter.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cloud-tests-filter.yml:23: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/cloud-tests-filter.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/devbox-update.yml:14: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/devbox-update.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/devbox-update.yml:17: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/devbox-update.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/devbox-update.yml:24: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/devbox-update.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/license-header-check.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/license-header-check.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/license-header-check.yml:13: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/license-header-check.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/lint.yaml:12: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/lint.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/lint.yaml:16: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/lint.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/lint.yaml:22: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/lint.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/openshift-upgrade-test.yaml:32: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/openshift-upgrade-test.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/openshift-upgrade-test.yaml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/openshift-upgrade-test.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:32: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:76: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:122: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:129: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:156: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:180: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:184: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:189: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:195: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/rebuild-released-images.yaml:212: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/rebuild-released-images.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release-branch.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-branch.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release-branch.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-branch.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release-openshift.yaml:24: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-openshift.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release-openshift.yaml:30: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-openshift.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release-post-merge.yml:98: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-post-merge.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release-post-merge.yml:104: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-post-merge.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/release-post-merge.yml:170: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-post-merge.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release-post-merge.yml:208: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-post-merge.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/release-post-merge.yml:220: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/release-post-merge.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/remove-label.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/remove-label.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/reports.yml:17: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/reports.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/reports.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/reports.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/sboms-pr.yaml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/sboms-pr.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/sboms-pr.yaml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/sboms-pr.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/stale.yml:21: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/stale.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/sync-helm-charts.yaml:21: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/sync-helm-charts.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/sync-helm-charts.yaml:24: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/sync-helm-charts.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/sync-helm-charts.yaml:30: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/sync-helm-charts.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/sync-helm-charts.yaml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/sync-helm-charts.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e-gov.yml:14: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e-gov.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/test-e2e-gov.yml:19: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e-gov.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/test-e2e-gov.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e-gov.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e-gov.yml:45: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e-gov.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:181: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:188: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:195: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:220: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:268: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:35: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:76: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-e2e.yml:98: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-e2e.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-int.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-int.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/test-int.yml:29: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-int.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-unit.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-unit.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/test-unit.yml:17: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-unit.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/test-unit.yml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/test-unit.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:28: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:33: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:44: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:128: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:135: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:142: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:159: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-e2e2.yaml:194: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-e2e2.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:231: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:236: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:266: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:273: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:280: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:308: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:359: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:377: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:384: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:392: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:400: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:421: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:39: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:50: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:125: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:169: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests-selectable.yaml:190: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/tests-selectable.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/update-helm.yaml:22: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/update-helm.yaml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/update-helm.yaml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/update-helm.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/update-helm.yaml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/update-helm.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/update-helm.yaml:41: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/update-helm.yaml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/update-licenses.yml:30: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/update-licenses.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/update-licenses.yml:35: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/update-licenses.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/update-licenses.yml:42: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/update-licenses.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/validate-manifests.yml:11: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/validate-manifests.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/validate-manifests.yml:15: update your workflow using https://app.stepsecurity.io/secureworkflow/mongodb/mongodb-atlas-kubernetes/validate-manifests.yml/main?enable=pin
Warn: containerImage not pinned by hash: .github/actions/certify-openshift-images/Dockerfile:1: pin your Docker image by updating registry.access.redhat.com/ubi8/ubi:latest to registry.access.redhat.com/ubi8/ubi:latest@sha256:19eae3d00adb37538a62b9bd093fd1e01dc6197f1925e960224244a1ed52bfb5
Warn: containerImage not pinned by hash: .github/actions/gen-install-scripts/Dockerfile:1: pin your Docker image by updating golang:1.24 to golang:1.24@sha256:20a022e5112a144aa7b7aeb3f22ebf2cdaefcc4aac0d64e8deeee8cdc18b9c0f
Warn: containerImage not pinned by hash: .github/actions/set-tag/Dockerfile:1: pin your Docker image by updating alpine/git:latest to alpine/git:latest@sha256:20cc3c332d30302b423ce036dcd7e5463884bc6ba1f867184a5b375a9aa1ebae
Warn: containerImage not pinned by hash: Dockerfile.post-install:2
Warn: containerImage not pinned by hash: Dockerfile.post-install:24: pin your Docker image by updating busybox to busybox@sha256:f85340bf132ae937d2c2a763b8335c9bab35d6e8293f70f606b9c6178d84f42b
Warn: containerImage not pinned by hash: fast.Dockerfile:2
Warn: containerImage not pinned by hash: fast.Dockerfile:6
Warn: containerImage not pinned by hash: fast.Dockerfile:7: pin your Docker image by updating registry.access.redhat.com/ubi9/ubi-micro:latest to registry.access.redhat.com/ubi9/ubi-micro:latest@sha256:ef76ed20e66a9b19ccbbafe5657d73246c78c8f06ef3161e0fce6831ed4f7352
Warn: containerImage not pinned by hash: test/app/Dockerfile:4
Warn: containerImage not pinned by hash: test/app/Dockerfile:22: pin your Docker image by updating gcr.io/distroless/static:nonroot to gcr.io/distroless/static:nonroot@sha256:627d6c5a23ad24e6bdff827f16c7b60e0289029b0c79e9f7ccd54ae3279fb45f
Warn: goCommand not pinned by hash: .github/actions/gen-install-scripts/Dockerfile:6
Warn: downloadThenRun not pinned by hash: .github/actions/gen-install-scripts/Dockerfile:12-13
Warn: goCommand not pinned by hash: .github/workflows/license-header-check.yml:18
Warn: goCommand not pinned by hash: .github/workflows/tests-e2e2.yaml:39
Warn: goCommand not pinned by hash: .github/workflows/tests-selectable.yaml:45
Info: 0 out of 63 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 41 third-party GitHubAction dependencies pinned
Info: 1 out of 5 goCommand dependencies pinned
Info: 0 out of 1 downloadThenRun dependencies pinned
Info: 0 out of 10 containerImage dependencies pinned