mirror of
https://github.com/shivammathur/setup-php.git
synced 2025-10-24 20:25:10 +07:00
Update Harden Runner step in node workflows
This commit is contained in:
7
.github/workflows/node-release.yml
vendored
7
.github/workflows/node-release.yml
vendored
@ -18,7 +18,12 @@ jobs:
|
||||
packages: write
|
||||
steps:
|
||||
- name: Harden Runner
|
||||
uses: step-security/harden-runner@main
|
||||
uses: step-security/harden-runner@v1
|
||||
with:
|
||||
allowed-endpoints:
|
||||
github.com:443
|
||||
npm.pkg.github.com:443
|
||||
registry.npmjs.org:443
|
||||
|
||||
- name: Checkout release
|
||||
if: github.event_name != 'workflow_dispatch'
|
||||
|
4
.github/workflows/node-workflow.yml
vendored
4
.github/workflows/node-workflow.yml
vendored
@ -26,11 +26,9 @@ jobs:
|
||||
operating-system: [ubuntu-latest, windows-latest, macos-latest]
|
||||
steps:
|
||||
- name: Harden Runner
|
||||
if: runner.os == 'Linux'
|
||||
uses: step-security/harden-runner@main
|
||||
uses: step-security/harden-runner@v1
|
||||
with:
|
||||
allowed-endpoints:
|
||||
beta.api.stepsecurity.io.:443
|
||||
codecov.io.:443
|
||||
github.com.:443
|
||||
nodejs.org.:443
|
||||
|
Reference in New Issue
Block a user