Skip to content

Commit 3e80f03

Browse files
authored
add
1 parent 3894d66 commit 3e80f03

File tree

1 file changed

+6
-3
lines changed

1 file changed

+6
-3
lines changed

.github/workflows/ci.yml

Lines changed: 6 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -7,11 +7,14 @@ on:
77
jobs:
88
lint_and_test:
99
runs-on: ubuntu-latest
10+
permissions:
11+
id-token: write
1012
steps:
11-
- name: Harden the runner (Audit all outbound calls)
12-
uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1
13+
- name: Harden the runner
14+
uses: step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
1315
with:
14-
egress-policy: audit
16+
egress-policy: block
17+
policy: global-allowed-endpoints-policy
1518

1619
- name: Check out repository code
1720
uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0

0 commit comments

Comments
 (0)