Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:132: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:145: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:152: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:159: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:200: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:211: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:222: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:255: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:267: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:275: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:283: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:295: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:297: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:325: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:331: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:345: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:350: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:375: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:384: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:398: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:403: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:426: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:435: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:448: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:452: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:485: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/cd.yml:16: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/cd.yml:20: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/cd.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/check-semver.yml:18: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/check-semver.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/check-semver.yml:22: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/check-semver.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/check-semver.yml:34: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/check-semver.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/check-semver.yml:50: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/check-semver.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:126: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:130: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:132: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:142: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:144: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:155: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:157: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:173: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:175: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:22: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:24: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:26: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:31: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:41: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:43: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:87: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:91: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:93: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:98: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:50: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:53: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:58: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:63: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:73: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:215: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:219: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:223: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:233: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:236: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:239: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/ci.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/docker.yml:21: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:25: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:39: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:45: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/docker.yml:48: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:57: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:64: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:72: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: third-party GitHubAction not pinned by hash: .github/workflows/docker.yml:87: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/docker.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/test-fixtures.yml:112: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/test-fixtures.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/website.yml:33: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/website.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/website.yml:35: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/website.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/website.yml:56: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/website.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/website.yml:58: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/website.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/website.yml:70: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/website.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/website.yml:72: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/website.yml/main?enable=pin
Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/website.yml:77: update your workflow using https://app.stepsecurity.io/secureworkflow/orhun/git-cliff/website.yml/main?enable=pin
Warn: containerImage not pinned by hash: Dockerfile:2
Warn: containerImage not pinned by hash: Dockerfile:5
Warn: containerImage not pinned by hash: Dockerfile:9
Warn: containerImage not pinned by hash: Dockerfile:17
Info: 0 out of 34 GitHub-owned GitHubAction dependencies pinned
Info: 0 out of 45 third-party GitHubAction dependencies pinned
Info: 0 out of 4 containerImage dependencies pinned