diff --git a/.github/workflows/master_build.yml b/.github/workflows/master_build.yml index 21b8803..565a043 100644 --- a/.github/workflows/master_build.yml +++ b/.github/workflows/master_build.yml @@ -8,13 +8,18 @@ jobs: dependencies: runs-on: ubuntu-latest steps: - - uses: actions/checkout@v4 - - uses: actions/setup-java@v4 + - name: Harden the runner (Audit all outbound calls) + uses: step-security/harden-runner@f4a75cfd619ee5ce8d5b864b0d183aff3c69b55a # v2.13.1 + with: + egress-policy: audit + + - uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # v4.3.0 + - uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1 with: distribution: 'adopt' java-version: '17' - name: Setup Gradle to generate and submit dependency graphs - uses: gradle/gradle-build-action@v2 + uses: gradle/gradle-build-action@a8f75513eafdebd8141bd1cd4e30fcd194af8dfa # v2.12.0 with: dependency-graph: generate-and-submit - name: Configure local.properties