Skip to content

chore(deps): update step-security/harden-runner action to v2.14.1#43

Merged
mergify[bot] merged 1 commit into
mainfrom
renovate/step-security-harden-runner-2.x
Jan 26, 2026
Merged

chore(deps): update step-security/harden-runner action to v2.14.1#43
mergify[bot] merged 1 commit into
mainfrom
renovate/step-security-harden-runner-2.x

Conversation

@renovate

@renovate renovate Bot commented Jan 26, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
step-security/harden-runner action patch v2.14.0v2.14.1

Release Notes

step-security/harden-runner (step-security/harden-runner)

v2.14.1

Compare Source

What's Changed
  1. In some self-hosted environments, the agent could briefly fall back to public DNS resolvers during startup if the system DNS was not yet available. This behavior was unintended for GitHub-hosted runners and has now been fixed to prevent any use of public DNS resolvers.

  2. Fixed npm audit vulnerabilities

Full Changelog: step-security/harden-runner@v2.14.0...v2.14.1


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@semanticdiff-com

semanticdiff-com Bot commented Jan 26, 2026

Copy link
Copy Markdown

Review changes with  SemanticDiff

Changed Files
File Status
  .github/workflows/ci.yaml  18% smaller

@gitnotebooks

gitnotebooks Bot commented Jan 26, 2026

Copy link
Copy Markdown

@coderabbitai

coderabbitai Bot commented Jan 26, 2026

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.


Comment @coderabbitai help to get the list of available commands and usage tips.

@deepsource-io

deepsource-io Bot commented Jan 26, 2026

Copy link
Copy Markdown
Contributor

Here's the code health analysis summary for commits c8236e7..0be9db1. View details on DeepSource ↗.

Analysis Summary

AnalyzerStatusSummaryLink
DeepSource Secrets LogoSecrets✅ SuccessView Check ↗
DeepSource Python LogoPython✅ SuccessView Check ↗

💡 If you’re a repository administrator, you can configure the quality gates from the settings.

@sonarqubecloud

Copy link
Copy Markdown

@mergify

mergify Bot commented Jan 26, 2026

Copy link
Copy Markdown
Contributor

🧪 CI Insights

Here's what we observed from your CI run for 0be9db1.

🟢 All jobs passed!

But CI Insights is watching 👀

@mergify mergify Bot merged commit 0be9db1 into main Jan 26, 2026
20 of 21 checks passed
@mergify mergify Bot deleted the renovate/step-security-harden-runner-2.x branch January 26, 2026 06:14
@mergify

mergify Bot commented Jan 26, 2026

Copy link
Copy Markdown
Contributor

Merge Queue Status

✅ The pull request has been merged at 0be9db1

This pull request spent 5 seconds in the queue, with no time running CI.
The checks were run in-place.

Required conditions to merge

@mergify mergify Bot temporarily deployed to code_quality January 26, 2026 06:14 Inactive
@mergify mergify Bot temporarily deployed to code_quality January 26, 2026 06:14 Inactive
@mergify mergify Bot removed the queued label Jan 26, 2026
@mergify

mergify Bot commented Jan 26, 2026

Copy link
Copy Markdown
Contributor

Thank you for your contribution @renovate[bot]! Your pull request has been merged.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants