4747 # currently provide a more fine-grained permission for release modification.
4848 contents : write # is needed to modify a release
4949 steps :
50- - uses : step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
50+ - uses : step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
5151 with :
5252 disable-sudo-and-containers : true
5353 egress-policy : audit
8282 REF_NAME : ${{ github.ref_name }}
8383 REGISTRY : ghcr.io
8484 steps :
85- - uses : step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
85+ - uses : step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
8686 with :
8787 disable-sudo-and-containers : true
8888 egress-policy : audit
@@ -124,7 +124,7 @@ jobs:
124124 permissions :
125125 packages : write # is needed by devcontainers/action to write templates as OCI artifacts
126126 steps :
127- - uses : step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
127+ - uses : step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
128128 with :
129129 disable-sudo : true
130130 egress-policy : audit
@@ -157,7 +157,7 @@ jobs:
157157 contents : write # is needed to modify a release
158158 needs : [generate-documents]
159159 steps :
160- - uses : step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
160+ - uses : step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
161161 with :
162162 disable-sudo : true
163163 egress-policy : audit
@@ -179,7 +179,7 @@ jobs:
179179 permissions :
180180 pull-requests : write # is needed by rdlf0/comment-released-prs-action to post comments on PRs
181181 steps :
182- - uses : step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2 # v2.13.2
182+ - uses : step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
183183 with :
184184 disable-sudo-and-containers : true
185185 egress-policy : audit
0 commit comments