Skip to content

Commit 03ff771

Browse files
author
Kenneth Rosario
authored
chore: fix scorecard gh action (#202)
1 parent 0102c8f commit 03ff771

File tree

1 file changed

+17
-17
lines changed

1 file changed

+17
-17
lines changed

.github/workflows/scorecard.yml

Lines changed: 17 additions & 17 deletions
Original file line numberDiff line numberDiff line change
@@ -25,23 +25,23 @@ jobs:
2525
id-token: write
2626

2727
steps:
28-
- name: Harden Runner
29-
uses: step-security/harden-runner@128a63446a954579617e875aaab7d2978154e969 # v2.4.0
30-
with:
31-
disable-sudo: true
32-
egress-policy: block
33-
allowed-endpoints: >
34-
api.github.com:443
35-
api.osv.dev:443
36-
api.securityscorecards.dev:443
37-
auth.docker.io:443
38-
bestpractices.coreinfrastructure.org:443
39-
fulcio.sigstore.dev:443
40-
github.com:443
41-
index.docker.io:443
42-
oss-fuzz-build-logs.storage.googleapis.com:443
43-
sigstore-tuf-root.storage.googleapis.com:443
44-
rekor.sigstore.dev:443
28+
- name: Harden Runner
29+
uses: step-security/harden-runner@128a63446a954579617e875aaab7d2978154e969 # v2.4.0
30+
with:
31+
disable-sudo: true
32+
egress-policy: block
33+
allowed-endpoints: >
34+
api.github.com:443
35+
api.osv.dev:443
36+
api.securityscorecards.dev:443
37+
auth.docker.io:443
38+
bestpractices.coreinfrastructure.org:443
39+
fulcio.sigstore.dev:443
40+
github.com:443
41+
index.docker.io:443
42+
oss-fuzz-build-logs.storage.googleapis.com:443
43+
sigstore-tuf-root.storage.googleapis.com:443
44+
rekor.sigstore.dev:443
4545
4646
- name: "Checkout code"
4747
uses: actions/checkout@8e5e7e5ab8b370d6c329ec480221332ada57f0ab # v3.5.2

0 commit comments

Comments
 (0)