diff --git a/.github/workflows/auto-approve-pr.yaml b/.github/workflows/auto-approve-pr.yaml index 6a461b4..0d4cd6a 100644 --- a/.github/workflows/auto-approve-pr.yaml +++ b/.github/workflows/auto-approve-pr.yaml @@ -14,7 +14,7 @@ jobs: if: github.event.pull_request.user.login == ${{ github.repository_owner }} steps: - name: Harden Runner - uses: step-security/harden-runner@80b2fcb96ae248b7b80d284855acf93c338a6a0a # v2.5.0 + uses: step-security/harden-runner@4a1e83c9ef6b0e39b16f17b2734e08cdfbeea46c # v2.5.0 with: egress-policy: audit diff --git a/.github/workflows/auto-update-pre-commit.yaml b/.github/workflows/auto-update-pre-commit.yaml index 43822f7..8b56861 100644 --- a/.github/workflows/auto-update-pre-commit.yaml +++ b/.github/workflows/auto-update-pre-commit.yaml @@ -22,7 +22,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@80b2fcb96ae248b7b80d284855acf93c338a6a0a # v2.5.0 + uses: step-security/harden-runner@4a1e83c9ef6b0e39b16f17b2734e08cdfbeea46c # v2.5.0 with: egress-policy: audit diff --git a/.github/workflows/codeql.yaml b/.github/workflows/codeql.yaml index 907fd3a..9381931 100644 --- a/.github/workflows/codeql.yaml +++ b/.github/workflows/codeql.yaml @@ -41,7 +41,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@80b2fcb96ae248b7b80d284855acf93c338a6a0a # v2.5.0 + uses: step-security/harden-runner@4a1e83c9ef6b0e39b16f17b2734e08cdfbeea46c # v2.5.0 with: egress-policy: audit diff --git a/.github/workflows/lint.yaml b/.github/workflows/lint.yaml index 7776bda..6b07e5d 100644 --- a/.github/workflows/lint.yaml +++ b/.github/workflows/lint.yaml @@ -20,7 +20,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@80b2fcb96ae248b7b80d284855acf93c338a6a0a # v2.5.0 + uses: step-security/harden-runner@4a1e83c9ef6b0e39b16f17b2734e08cdfbeea46c # v2.5.0 with: egress-policy: audit