Bump actions/checkout from 3 to 3.0.2.
diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml
index 0067a01..91475e7 100644
--- a/.github/workflows/codeql-analysis.yml
+++ b/.github/workflows/codeql-analysis.yml
@@ -1,74 +1,74 @@
-# Licensed to the Apache Software Foundation (ASF) under one or more
-# contributor license agreements.  See the NOTICE file distributed with
-# this work for additional information regarding copyright ownership.
-# The ASF licenses this file to You under the Apache License, Version 2.0
-# (the "License"); you may not use this file except in compliance with
-# the License.  You may obtain a copy of the License at
-#
-#      http://www.apache.org/licenses/LICENSE-2.0
-#
-# Unless required by applicable law or agreed to in writing, software
-# distributed under the License is distributed on an "AS IS" BASIS,
-# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
-# See the License for the specific language governing permissions and
-# limitations under the License.
-
-name: "CodeQL"
-
-on:
-  push:
-    branches: [ master ]
-  pull_request:
-    # The branches below must be a subset of the branches above
-    branches: [ master ]
-  schedule:
-    - cron: '33 9 * * 4'
-
-jobs:
-  analyze:
-    name: Analyze
-    runs-on: ubuntu-latest
-    permissions:
-      actions: read
-      contents: read
-      security-events: write
-
-    strategy:
-      fail-fast: false
-      matrix:
-        language: [ 'java' ]
-        # CodeQL supports [ 'cpp', 'csharp', 'go', 'java', 'javascript', 'python', 'ruby' ]
-        # Learn more about CodeQL language support at https://git.io/codeql-language-support
-
-    steps:
-    - name: Checkout repository
-      uses: actions/checkout@v3
-
-    # Initializes the CodeQL tools for scanning.
-    - name: Initialize CodeQL
-      uses: github/codeql-action/init@v2
-      with:
-        languages: ${{ matrix.language }}
-        # If you wish to specify custom queries, you can do so here or in a config file.
-        # By default, queries listed here will override any specified in a config file.
-        # Prefix the list here with "+" to use these queries and those in the config file.
-        # queries: ./path/to/local/query, your-org/your-repo/queries@main
-
-    # Autobuild attempts to build any compiled languages  (C/C++, C#, or Java).
-    # If this step fails, then you should remove it and run the build manually (see below)
-    - name: Autobuild
-      uses: github/codeql-action/autobuild@v2
-
-    # ℹī¸ Command-line programs to run using the OS shell.
-    # 📚 https://git.io/JvXDl
-
-    # ✏ī¸ If the Autobuild fails above, remove it and uncomment the following three lines
-    #    and modify them (or add more) to build your code if your project
-    #    uses a compiled language
-
-    #- run: |
-    #   make bootstrap
-    #   make release
-
-    - name: Perform CodeQL Analysis
-      uses: github/codeql-action/analyze@v2
+# Licensed to the Apache Software Foundation (ASF) under one or more

+# contributor license agreements.  See the NOTICE file distributed with

+# this work for additional information regarding copyright ownership.

+# The ASF licenses this file to You under the Apache License, Version 2.0

+# (the "License"); you may not use this file except in compliance with

+# the License.  You may obtain a copy of the License at

+#

+#      http://www.apache.org/licenses/LICENSE-2.0

+#

+# Unless required by applicable law or agreed to in writing, software

+# distributed under the License is distributed on an "AS IS" BASIS,

+# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.

+# See the License for the specific language governing permissions and

+# limitations under the License.

+

+name: "CodeQL"

+

+on:

+  push:

+    branches: [ master ]

+  pull_request:

+    # The branches below must be a subset of the branches above

+    branches: [ master ]

+  schedule:

+    - cron: '33 9 * * 4'

+

+jobs:

+  analyze:

+    name: Analyze

+    runs-on: ubuntu-latest

+    permissions:

+      actions: read

+      contents: read

+      security-events: write

+

+    strategy:

+      fail-fast: false

+      matrix:

+        language: [ 'java' ]

+        # CodeQL supports [ 'cpp', 'csharp', 'go', 'java', 'javascript', 'python', 'ruby' ]

+        # Learn more about CodeQL language support at https://git.io/codeql-language-support

+

+    steps:

+    - name: Checkout repository

+      uses: actions/checkout@v3.0.2

+

+    # Initializes the CodeQL tools for scanning.

+    - name: Initialize CodeQL

+      uses: github/codeql-action/init@v2

+      with:

+        languages: ${{ matrix.language }}

+        # If you wish to specify custom queries, you can do so here or in a config file.

+        # By default, queries listed here will override any specified in a config file.

+        # Prefix the list here with "+" to use these queries and those in the config file.

+        # queries: ./path/to/local/query, your-org/your-repo/queries@main

+

+    # Autobuild attempts to build any compiled languages  (C/C++, C#, or Java).

+    # If this step fails, then you should remove it and run the build manually (see below)

+    - name: Autobuild

+      uses: github/codeql-action/autobuild@v2

+

+    # ℹī¸ Command-line programs to run using the OS shell.

+    # 📚 https://git.io/JvXDl

+

+    # ✏ī¸ If the Autobuild fails above, remove it and uncomment the following three lines

+    #    and modify them (or add more) to build your code if your project

+    #    uses a compiled language

+

+    #- run: |

+    #   make bootstrap

+    #   make release

+

+    - name: Perform CodeQL Analysis

+      uses: github/codeql-action/analyze@v2

diff --git a/.github/workflows/coverage.yml b/.github/workflows/coverage.yml
index ae0ab60..8529d27 100644
--- a/.github/workflows/coverage.yml
+++ b/.github/workflows/coverage.yml
@@ -29,7 +29,7 @@
         java: [ 8 ]
 
     steps:
-    - uses: actions/checkout@v3
+    - uses: actions/checkout@v3.0.2
     - uses: actions/cache@v3.0.8
       with:
         path: ~/.m2/repository
diff --git a/.github/workflows/maven.yml b/.github/workflows/maven.yml
index b251777..4ef7776 100644
--- a/.github/workflows/maven.yml
+++ b/.github/workflows/maven.yml
@@ -40,7 +40,7 @@
       fail-fast: false
 
     steps:
-    - uses: actions/checkout@v3
+    - uses: actions/checkout@v3.0.2
     - uses: actions/cache@v3.0.8
       with:
         path: ~/.m2/repository
diff --git a/src/changes/changes.xml b/src/changes/changes.xml
index 3d0b40d..f3dce70 100644
--- a/src/changes/changes.xml
+++ b/src/changes/changes.xml
@@ -145,8 +145,8 @@
       <action type="update" dev="ggregory" due-to="Dependabot, Gary Gregory">
         Bump actions/cache from 2.1.6 to 3.0.8 #221, #249.
       </action>
-      <action type="update" dev="ggregory" due-to="Dependabot">
-        Bump actions/checkout from 2.3.4 to 3 #217, #220, #245.
+      <action type="update" dev="ggregory" due-to="Dependabot, Gary Gregory">
+        Bump actions/checkout from 2.3.4 to 3.0.2 #217, #220, #245.
       </action>
       <action type="update" dev="ggregory" due-to="Gary Gregory">
         Bump actions/setup-java from 2 to 3.