Skip to content

build(deps): bump step-security/harden-runner in the actions group

7b345d8
Select commit
Loading
Failed to load commit list.
Merged

build(deps): bump step-security/harden-runner from 2.17.0 to 2.18.0 in the actions group #2486

build(deps): bump step-security/harden-runner in the actions group
7b345d8
Select commit
Loading
Failed to load commit list.
StepSecurity Actions Security / StepSecurity Harden-Runner succeeded Apr 15, 2026 in 17m 37s

No anomalous activity on CI/CD runners

No new Harden-Runner detections for this pull request.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

📋 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
e2e.yaml 24461177823 - - Harden-Runner not enabled
verify.yaml 24461177885 6 4 View Insights
actionlint.yaml 24461177907 2 3 View Insights
zizmor.yaml 24461177869 4 4 View Insights
build.yaml 24461177844 5 4 View Insights
go-tests.yaml 24461177880 8 3 View Insights
melange-test-pipelines.yaml 24461177859 22 6 View Insights
wolfi-presubmit.yaml 24461177818 33 7 View Insights

📚 Learn More

You can learn more about this GitHub check here