|
|
@@ -28,7 +28,7 @@ jobs:
|
|
|
outputs:
|
|
|
check_run_id: ${{ steps.create_check.outputs.check_run_id }}
|
|
|
steps:
|
|
|
- - uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
|
|
|
+ - uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
|
|
|
with:
|
|
|
egress-policy: audit
|
|
|
|
|
|
@@ -82,7 +82,7 @@ jobs:
|
|
|
TF_VAR_AWS_SA_NAME: ${{ secrets.AWS_SA_NAME }}
|
|
|
TF_VAR_AWS_SA_NAMESPACE: ${{ secrets.AWS_SA_NAMESPACE }}
|
|
|
steps:
|
|
|
- - uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
|
|
|
+ - uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
|
|
|
with:
|
|
|
egress-policy: audit
|
|
|
|
|
|
@@ -169,7 +169,7 @@ jobs:
|
|
|
GCP_FED_SERVICE_ACCOUNT_EMAIL: ${{ secrets.GCP_FED_SERVICE_ACCOUNT_EMAIL }}
|
|
|
GCP_FED_WORKLOAD_IDENTITY_PROVIDER: ${{ secrets.GCP_FED_WORKLOAD_IDENTITY_PROVIDER }}
|
|
|
steps:
|
|
|
- - uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
|
|
|
+ - uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
|
|
|
with:
|
|
|
egress-policy: audit
|
|
|
|
|
|
@@ -264,7 +264,7 @@ jobs:
|
|
|
TFC_AZURE_SUBSCRIPTION_ID: ${{ secrets.TFC_AZURE_SUBSCRIPTION_ID }}
|
|
|
TFC_VAULT_URL: ${{ secrets.TFC_VAULT_URL }}
|
|
|
steps:
|
|
|
- - uses: step-security/harden-runner@f808768d1510423e83855289c910610ca9b43176 # v2.17.0
|
|
|
+ - uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
|
|
|
with:
|
|
|
egress-policy: audit
|
|
|
|