Skip to content

Bump step-security/harden-runner from 2.10.2 to 2.12.2 - #112

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/step-security/harden-runner-2.12.2
Closed

Bump step-security/harden-runner from 2.10.2 to 2.12.2#112
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/step-security/harden-runner-2.12.2

Bump step-security/harden-runner from 2.10.2 to 2.12.2

f226076
Select commit
Loading
Failed to load commit list.
This check has been archived and is scheduled for deletion. Learn more about checks retention
StepSecurity Actions Security / StepSecurity Harden-Runner succeeded Jul 3, 2025 in 4m 13s

No anomalous activity on CI/CD runners

No new Harden-Runner detections for this pull request.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

📋 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
codeql.yml 16042076354 3 3 View Insights
validate-action-typings.yml 16042076353 1 3 View Insights
main.yml 16042076352 6 2 View Insights
test-auth.yml 16042076260 9 3 View Insights
guarddog.yml 16042076404 - - Harden-Runner not enabled
test-single-instance.yml 16042076366 7 3 View Insights
test-replica-set.yml 16042076355 7 3 View Insights
dependency-review.yml 16042076367 3 3 View Insights
test-auth.yml 16042076360 10 3 View Insights
test-single-instance.yml 16042076263 7 3 View Insights
test-replica-set.yml 16042076265 7 3 View Insights
main.yml 16042076257 6 2 View Insights

📚 Learn More

You can learn more about this GitHub check here