diff --git a/.github/workflows/buildmgr.yml b/.github/workflows/buildmgr.yml index 6ba295560..9df848826 100644 --- a/.github/workflows/buildmgr.yml +++ b/.github/workflows/buildmgr.yml @@ -64,7 +64,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -127,7 +127,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -228,7 +228,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -362,7 +362,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -517,7 +517,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit - name: Install dependencies @@ -644,7 +644,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -690,7 +690,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -726,7 +726,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/cpp-linter.yml b/.github/workflows/cpp-linter.yml index 085e5985e..bf031563a 100644 --- a/.github/workflows/cpp-linter.yml +++ b/.github/workflows/cpp-linter.yml @@ -34,7 +34,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/global.yaml b/.github/workflows/global.yaml index a2842fd83..ada1765f6 100644 --- a/.github/workflows/global.yaml +++ b/.github/workflows/global.yaml @@ -13,7 +13,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/markdown.yml b/.github/workflows/markdown.yml index ebab7241b..41f4730f8 100644 --- a/.github/workflows/markdown.yml +++ b/.github/workflows/markdown.yml @@ -22,7 +22,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/nightly.yml b/.github/workflows/nightly.yml index 004300302..327eb1ad1 100644 --- a/.github/workflows/nightly.yml +++ b/.github/workflows/nightly.yml @@ -57,7 +57,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -102,7 +102,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/packchk.yml b/.github/workflows/packchk.yml index 2e055d3b2..b41dbee03 100644 --- a/.github/workflows/packchk.yml +++ b/.github/workflows/packchk.yml @@ -71,7 +71,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -160,7 +160,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -230,7 +230,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -375,7 +375,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/packgen.yml b/.github/workflows/packgen.yml index 549bfc659..3d34244bb 100644 --- a/.github/workflows/packgen.yml +++ b/.github/workflows/packgen.yml @@ -64,7 +64,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -194,7 +194,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -241,7 +241,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -332,7 +332,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/projmgr.yml b/.github/workflows/projmgr.yml index e6bd674f0..17aab73e7 100644 --- a/.github/workflows/projmgr.yml +++ b/.github/workflows/projmgr.yml @@ -69,7 +69,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -147,7 +147,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -377,7 +377,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -433,7 +433,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -524,7 +524,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index 3800cdecb..abc18a9b2 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -26,7 +26,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/shared_matrix_prep.yml b/.github/workflows/shared_matrix_prep.yml index 9812952cf..cb3d79416 100644 --- a/.github/workflows/shared_matrix_prep.yml +++ b/.github/workflows/shared_matrix_prep.yml @@ -30,7 +30,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/svdconv.yml b/.github/workflows/svdconv.yml index 18eed102a..6837be593 100644 --- a/.github/workflows/svdconv.yml +++ b/.github/workflows/svdconv.yml @@ -63,7 +63,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -150,7 +150,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -220,7 +220,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit @@ -373,7 +373,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit diff --git a/.github/workflows/unit_test_results.yml b/.github/workflows/unit_test_results.yml index 1f222ea8e..bf6fbc4c3 100644 --- a/.github/workflows/unit_test_results.yml +++ b/.github/workflows/unit_test_results.yml @@ -16,7 +16,7 @@ jobs: steps: - name: Harden Runner if: ${{ !github.event.repository.private }} - uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3 + uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4 with: egress-policy: audit