Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/benchmark.yml:12: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/benchmark.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/benchmark.yml:15: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/benchmark.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/benchmark.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/benchmark.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/benchmark.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/benchmark.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/fuzz.yml:21: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/fuzz.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/fuzz.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/fuzz.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/fuzz.yml:32: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/fuzz.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:118: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:120: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:22: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:24: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests.yml:27: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:38: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/tests.yml:53: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:68: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:70: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:88: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:91: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/tests.yml:104: update your workflow using https://app.stepsecurity.io/secureworkflow/executablebooks/markdown-it-py/tests.yml/master?enable=pin
Warn: pipCommand not pinned by hash: .github/workflows/benchmark.yml:26
Warn: pipCommand not pinned by hash: .github/workflows/benchmark.yml:27
Warn: pipCommand not pinned by hash: .github/workflows/tests.yml:97
Warn: pipCommand not pinned by hash: .github/workflows/tests.yml:98
Warn: pipCommand not pinned by hash: .github/workflows/tests.yml:125
Warn: pipCommand not pinned by hash: .github/workflows/tests.yml:46
Warn: pipCommand not pinned by hash: .github/workflows/tests.yml:47
Warn: pipCommand not pinned by hash: .github/workflows/tests.yml:75
Warn: pipCommand not pinned by hash: .github/workflows/tests.yml:76
Info: 0 out of 14 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 6 third-party GitHubAction dependencies pinned
Info: 1 out of 10 pipCommand dependencies pinned