diff --git a/.github/workflows/assign-to-project.yml b/.github/workflows/assign-to-project.yml index df19bb1..1b7a4bc 100644 --- a/.github/workflows/assign-to-project.yml +++ b/.github/workflows/assign-to-project.yml @@ -20,7 +20,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/auto-assign-pr.yml b/.github/workflows/auto-assign-pr.yml index 8723a8b..2523408 100644 --- a/.github/workflows/auto-assign-pr.yml +++ b/.github/workflows/auto-assign-pr.yml @@ -13,7 +13,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/ci-build.yml b/.github/workflows/ci-build.yml index fa18298..c0c3645 100644 --- a/.github/workflows/ci-build.yml +++ b/.github/workflows/ci-build.yml @@ -21,7 +21,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/codeql-scan.yml b/.github/workflows/codeql-scan.yml index 6735c04..2c74092 100644 --- a/.github/workflows/codeql-scan.yml +++ b/.github/workflows/codeql-scan.yml @@ -37,7 +37,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/docker-linter.yml b/.github/workflows/docker-linter.yml index 2cca41c..5e93028 100644 --- a/.github/workflows/docker-linter.yml +++ b/.github/workflows/docker-linter.yml @@ -29,7 +29,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: audit # TODO: change to 'egress-policy: block' after couple of runs diff --git a/.github/workflows/mark-stale.yml b/.github/workflows/mark-stale.yml index d2db4ed..9220cad 100644 --- a/.github/workflows/mark-stale.yml +++ b/.github/workflows/mark-stale.yml @@ -17,7 +17,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/pr-labeler.yml b/.github/workflows/pr-labeler.yml index f8ba64a..8f04231 100644 --- a/.github/workflows/pr-labeler.yml +++ b/.github/workflows/pr-labeler.yml @@ -19,7 +19,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/release-build.yml b/.github/workflows/release-build.yml index 5d623f3..f3f5abe 100644 --- a/.github/workflows/release-build.yml +++ b/.github/workflows/release-build.yml @@ -21,7 +21,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: > @@ -62,7 +62,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@dd2c410b088af7c0dc8046f3ac9a8f4148492a95 + uses: step-security/harden-runner@2e205a28d0e1da00c5f53b161f4067b052c61f34 with: egress-policy: block allowed-endpoints: >