diff --git a/.github/workflows/buildmgr.yml b/.github/workflows/buildmgr.yml index 517c25acd..8fd1baa0d 100644 --- a/.github/workflows/buildmgr.yml +++ b/.github/workflows/buildmgr.yml @@ -64,7 +64,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -102,7 +102,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -201,7 +201,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -334,7 +334,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -493,7 +493,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit - name: Install dependencies @@ -619,7 +619,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -664,7 +664,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -699,7 +699,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/cpp-linter.yml b/.github/workflows/cpp-linter.yml index 4166514e0..f8f8e5a13 100644 --- a/.github/workflows/cpp-linter.yml +++ b/.github/workflows/cpp-linter.yml @@ -34,7 +34,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/global.yaml b/.github/workflows/global.yaml index e9650fce8..ed7e72a6e 100644 --- a/.github/workflows/global.yaml +++ b/.github/workflows/global.yaml @@ -12,7 +12,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/markdown.yml b/.github/workflows/markdown.yml index a9dcbcaa4..3261977ab 100644 --- a/.github/workflows/markdown.yml +++ b/.github/workflows/markdown.yml @@ -13,7 +13,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/nightly.yml b/.github/workflows/nightly.yml index 9104782a5..c26560274 100644 --- a/.github/workflows/nightly.yml +++ b/.github/workflows/nightly.yml @@ -36,7 +36,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/packchk.yml b/.github/workflows/packchk.yml index 276dfb384..95bc92680 100644 --- a/.github/workflows/packchk.yml +++ b/.github/workflows/packchk.yml @@ -62,7 +62,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -108,7 +108,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -178,7 +178,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -322,7 +322,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/packgen.yml b/.github/workflows/packgen.yml index 6f8130255..5adec9e8e 100644 --- a/.github/workflows/packgen.yml +++ b/.github/workflows/packgen.yml @@ -57,7 +57,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -162,7 +162,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -209,7 +209,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -299,7 +299,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/projmgr.yml b/.github/workflows/projmgr.yml index 33e7ae17f..349aa4a8a 100644 --- a/.github/workflows/projmgr.yml +++ b/.github/workflows/projmgr.yml @@ -63,7 +63,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -99,7 +99,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -312,7 +312,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -368,7 +368,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -458,7 +458,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index cc2192ef9..25c290deb 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -30,7 +30,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/shared_matrix_prep.yml b/.github/workflows/shared_matrix_prep.yml index a68ee2c90..e2a5eaa72 100644 --- a/.github/workflows/shared_matrix_prep.yml +++ b/.github/workflows/shared_matrix_prep.yml @@ -30,7 +30,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/svdconv.yml b/.github/workflows/svdconv.yml index 0f9f05051..9a1875a15 100644 --- a/.github/workflows/svdconv.yml +++ b/.github/workflows/svdconv.yml @@ -54,7 +54,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -99,7 +99,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -169,7 +169,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit @@ -320,7 +320,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit diff --git a/.github/workflows/unit_test_results.yml b/.github/workflows/unit_test_results.yml index 987bf6b4e..70f5d611e 100644 --- a/.github/workflows/unit_test_results.yml +++ b/.github/workflows/unit_test_results.yml @@ -19,7 +19,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@c95a14d0e5bab51a9f56296a4eb0e416910cd350 # v2.10.3 + uses: step-security/harden-runner@cb605e52c26070c328afc4562f0b4ada7618a84e # v2.10.4 with: egress-policy: audit