Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:123: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:23: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:40: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:49: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:52: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:55: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:58: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:68: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:71: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:74: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:77: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:91: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:94: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/build-and-publish.yml:97: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/build-and-publish.yml/master?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/security.yml:17: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/security.yml/master?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/security.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/kronostechnologies/oauth2orize-bearer-to-bearer/security.yml/master?enable=pin
Info: 0 out of 5 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 13 third-party GitHubAction dependencies pinned