From abacf79511fec6fe3d24946737f2b0dc0635e444 Mon Sep 17 00:00:00 2001 From: Jed Salazar Date: Tue, 12 Mar 2024 11:51:40 -0600 Subject: [PATCH] Add Harden Runner audit configs Signed-off-by: Jed Salazar --- .github/workflows/ci.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index cea6945..a1852b8 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -11,6 +11,10 @@ jobs: build: runs-on: ubuntu-latest steps: + - uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0 + with: + egress-policy: audit + - name: checkout uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1