build(deps): bump sigstore/cosign-installer in the gh-actions group (#386)

Bumps the gh-actions group with 1 update: [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer).


Updates `sigstore/cosign-installer` from e9a05e6d32d7ed22b5656cd874ef31af58d05bfa to 84f54a2bcd1ecf70e51a05388183dce4e1487230
- [Release notes](https://github.com/sigstore/cosign-installer/releases)
- [Commits](e9a05e6d32...84f54a2bcd)

---
updated-dependencies:
- dependency-name: sigstore/cosign-installer
  dependency-version: 84f54a2bcd1ecf70e51a05388183dce4e1487230
  dependency-type: direct:production
  dependency-group: gh-actions
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
This commit is contained in:
dependabot[bot]
2025-06-23 08:00:19 +00:00
committed by GitHub
parent 9c9890a74d
commit 5faf18d8d2

View File

@@ -33,7 +33,7 @@ jobs:
- name: Checkout
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # ratchet:actions/checkout@v4
- name: Install cosign
uses: sigstore/cosign-installer@e9a05e6d32d7ed22b5656cd874ef31af58d05bfa # ratchet:sigstore/cosign-installer@main
uses: sigstore/cosign-installer@84f54a2bcd1ecf70e51a05388183dce4e1487230 # ratchet:sigstore/cosign-installer@main
with:
cosign-release: 'v2.2.3'
- name: Verify runner image