Skip to content

Commit 3894d66

Browse files
authored
add
1 parent cdb8ce5 commit 3894d66

File tree

1 file changed

+6
-3
lines changed

1 file changed

+6
-3
lines changed

.github/workflows/coverage.yml

Lines changed: 6 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -11,11 +11,14 @@ concurrency:
1111
jobs:
1212
run_coverage:
1313
runs-on: ubuntu-latest
14+
permissions:
15+
id-token: write
1416
steps:
15-
- name: Harden the runner (Audit all outbound calls)
16-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
17+
- name: Harden the runner
18+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
1719
with:
18-
egress-policy: audit
20+
egress-policy: block
21+
policy: global-allowed-endpoints-policy
1922

2023
- name: Check out repository code
2124
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0

0 commit comments

Comments
 (0)