diff --git a/.github/workflows/docker.yml b/.github/workflows/docker.yml index 94e31b341..85b2775fc 100644 --- a/.github/workflows/docker.yml +++ b/.github/workflows/docker.yml @@ -20,7 +20,7 @@ jobs: packages: write steps: - name: Harden Runner - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a + uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/docs.yml b/.github/workflows/docs.yml index 46dbc1b12..cba1e5968 100644 --- a/.github/workflows/docs.yml +++ b/.github/workflows/docs.yml @@ -19,7 +19,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a + uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index d9844e7f9..b71ca36ba 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -25,7 +25,7 @@ jobs: id-token: write steps: - name: Harden Runner - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a + uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/static-analysis.yml b/.github/workflows/static-analysis.yml index d95ef6a49..52ca270e3 100644 --- a/.github/workflows/static-analysis.yml +++ b/.github/workflows/static-analysis.yml @@ -17,7 +17,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a + uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b with: egress-policy: block allowed-endpoints: > diff --git a/.github/workflows/terraform-lint.yml b/.github/workflows/terraform-lint.yml index f83504cb6..bd98afc3d 100644 --- a/.github/workflows/terraform-lint.yml +++ b/.github/workflows/terraform-lint.yml @@ -17,7 +17,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # tag:v2.13.1 + uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b # tag:v2.15.0 with: egress-policy: audit diff --git a/.github/workflows/test.yml b/.github/workflows/test.yml index a2ad456e7..039cbffc1 100644 --- a/.github/workflows/test.yml +++ b/.github/workflows/test.yml @@ -16,7 +16,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a + uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b with: egress-policy: block allowed-endpoints: @@ -45,7 +45,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a + uses: step-security/harden-runner@a90bcbc6539c36a85cdfeb73f7e2f433735f215b with: egress-policy: block allowed-endpoints: