Skip to content

Bump step-security/harden-runner from 2.10.2 to 2.12.1#103

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/step-security/harden-runner-2.12.1
Closed

Bump step-security/harden-runner from 2.10.2 to 2.12.1#103
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/step-security/harden-runner-2.12.1

Bump step-security/harden-runner from 2.10.2 to 2.12.1

836a8bc
Select commit
Loading
Failed to load commit list.
This check has been archived and is scheduled for deletion. Learn more about checks retention
StepSecurity Actions Security / StepSecurity Harden-Runner succeeded Jun 12, 2025 in 4m 31s

No anomalous activity on CI/CD runners

No new Harden-Runner detections for this pull request.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

📋 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
main.yml 15598633716 6 2 View Insights
test-auth.yml 15598633748 9 3 View Insights
validate-action-typings.yml 15598633721 1 3 View Insights
main.yml 15598633361 6 2 View Insights
codeql.yml 15598633735 2 3 View Insights
test-auth.yml 15598633365 9 3 View Insights
test-replica-set.yml 15598633368 7 3 View Insights
test-single-instance.yml 15598633354 7 3 View Insights
guarddog.yml 15598633826 - - Harden-Runner not enabled
test-single-instance.yml 15598633746 7 3 View Insights
dependency-review.yml 15598633767 3 3 View Insights
test-replica-set.yml 15598633733 7 3 View Insights

📚 Learn More

You can learn more about this GitHub check here