diff --git a/.github/workflows/bot-advanced-check.yml b/.github/workflows/bot-advanced-check.yml index c37a1a75f..c31cbf508 100644 --- a/.github/workflows/bot-advanced-check.yml +++ b/.github/workflows/bot-advanced-check.yml @@ -28,7 +28,7 @@ jobs: runs-on: hl-sdk-py-lin-md steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/bot-assignment-check.yml b/.github/workflows/bot-assignment-check.yml index 032dd1815..511392ffe 100644 --- a/.github/workflows/bot-assignment-check.yml +++ b/.github/workflows/bot-assignment-check.yml @@ -12,7 +12,7 @@ jobs: runs-on: hl-sdk-py-lin-md steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/bot-beginner-assign-on-comment.yml b/.github/workflows/bot-beginner-assign-on-comment.yml index ee239873d..9975c0e5c 100644 --- a/.github/workflows/bot-beginner-assign-on-comment.yml +++ b/.github/workflows/bot-beginner-assign-on-comment.yml @@ -23,7 +23,7 @@ jobs: steps: - name: Harden runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/bot-coderabbit-plan-trigger.yml b/.github/workflows/bot-coderabbit-plan-trigger.yml index cf6266e75..66ecc0a40 100644 --- a/.github/workflows/bot-coderabbit-plan-trigger.yml +++ b/.github/workflows/bot-coderabbit-plan-trigger.yml @@ -35,7 +35,7 @@ jobs: steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/bot-gfi-assign-on-comment.yml b/.github/workflows/bot-gfi-assign-on-comment.yml index 7d49d6664..92539b333 100644 --- a/.github/workflows/bot-gfi-assign-on-comment.yml +++ b/.github/workflows/bot-gfi-assign-on-comment.yml @@ -24,7 +24,7 @@ jobs: steps: - name: Harden runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/bot-gfi-candidate-notification.yaml b/.github/workflows/bot-gfi-candidate-notification.yaml index 8a0fffede..2f4736511 100644 --- a/.github/workflows/bot-gfi-candidate-notification.yaml +++ b/.github/workflows/bot-gfi-candidate-notification.yaml @@ -21,7 +21,7 @@ jobs: steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 with: egress-policy: audit diff --git a/.github/workflows/bot-inactivity-unassign.yml b/.github/workflows/bot-inactivity-unassign.yml index 00675a485..4bbbd3ff3 100644 --- a/.github/workflows/bot-inactivity-unassign.yml +++ b/.github/workflows/bot-inactivity-unassign.yml @@ -25,7 +25,7 @@ jobs: uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 with: egress-policy: audit diff --git a/.github/workflows/bot-intermediate-assignment.yml b/.github/workflows/bot-intermediate-assignment.yml index 6a404be6a..e5e16ea45 100644 --- a/.github/workflows/bot-intermediate-assignment.yml +++ b/.github/workflows/bot-intermediate-assignment.yml @@ -26,7 +26,7 @@ jobs: runs-on: hl-sdk-py-lin-md steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/bot-p0-issues-notify-team.yml b/.github/workflows/bot-p0-issues-notify-team.yml index f8f812afd..d2a6a1a06 100644 --- a/.github/workflows/bot-p0-issues-notify-team.yml +++ b/.github/workflows/bot-p0-issues-notify-team.yml @@ -20,7 +20,7 @@ jobs: steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/cron-admin-update-spam-list.yml b/.github/workflows/cron-admin-update-spam-list.yml index d307b7604..31b0779b4 100644 --- a/.github/workflows/cron-admin-update-spam-list.yml +++ b/.github/workflows/cron-admin-update-spam-list.yml @@ -23,7 +23,7 @@ jobs: runs-on: hl-sdk-py-lin-md steps: - name: Harden runner (audit outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/cron-calls-community.yml b/.github/workflows/cron-calls-community.yml index e1b3b6414..fccda45aa 100644 --- a/.github/workflows/cron-calls-community.yml +++ b/.github/workflows/cron-calls-community.yml @@ -27,7 +27,7 @@ jobs: runs-on: hl-sdk-py-lin-md steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df #2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 #2.19.0 with: egress-policy: audit diff --git a/.github/workflows/cron-calls-office-hours.yml b/.github/workflows/cron-calls-office-hours.yml index d8f925041..8f44c0382 100644 --- a/.github/workflows/cron-calls-office-hours.yml +++ b/.github/workflows/cron-calls-office-hours.yml @@ -26,7 +26,7 @@ jobs: cancel-in-progress: false steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df #2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 #2.19.0 with: egress-policy: audit diff --git a/.github/workflows/cron-enforcer-pr-linked-issue.yml b/.github/workflows/cron-enforcer-pr-linked-issue.yml index 7c1bad17c..9b476ecf3 100644 --- a/.github/workflows/cron-enforcer-pr-linked-issue.yml +++ b/.github/workflows/cron-enforcer-pr-linked-issue.yml @@ -24,7 +24,7 @@ jobs: steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit - name: Checkout repository diff --git a/.github/workflows/cron-pr-check-broken-links.yml b/.github/workflows/cron-pr-check-broken-links.yml index e56037f49..20b92da38 100644 --- a/.github/workflows/cron-pr-check-broken-links.yml +++ b/.github/workflows/cron-pr-check-broken-links.yml @@ -20,7 +20,7 @@ jobs: runs-on: hl-sdk-py-lin-md steps: - name: Harden runner (audit outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/cron-reminder-issue-no-pr.yml b/.github/workflows/cron-reminder-issue-no-pr.yml index 5b67ec0f8..12f688d90 100644 --- a/.github/workflows/cron-reminder-issue-no-pr.yml +++ b/.github/workflows/cron-reminder-issue-no-pr.yml @@ -22,7 +22,7 @@ jobs: steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 with: egress-policy: audit diff --git a/.github/workflows/cron-reminder-pr-inactive.yml b/.github/workflows/cron-reminder-pr-inactive.yml index 76adda149..1f6007c07 100644 --- a/.github/workflows/cron-reminder-pr-inactive.yml +++ b/.github/workflows/cron-reminder-pr-inactive.yml @@ -25,7 +25,7 @@ jobs: steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit - name: Checkout repository diff --git a/.github/workflows/pr-check-feedback-all.yml b/.github/workflows/pr-check-feedback-all.yml index cc5626a44..52192e439 100644 --- a/.github/workflows/pr-check-feedback-all.yml +++ b/.github/workflows/pr-check-feedback-all.yml @@ -24,7 +24,7 @@ jobs: runs-on: hl-sdk-py-lin-md steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-primary-broken-links.yml b/.github/workflows/pr-check-primary-broken-links.yml index 79b6070f1..091152709 100644 --- a/.github/workflows/pr-check-primary-broken-links.yml +++ b/.github/workflows/pr-check-primary-broken-links.yml @@ -22,7 +22,7 @@ jobs: steps: - name: Harden runner (audit outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-primary-codecov.yml b/.github/workflows/pr-check-primary-codecov.yml index 60dcbf11c..731bea68e 100644 --- a/.github/workflows/pr-check-primary-codecov.yml +++ b/.github/workflows/pr-check-primary-codecov.yml @@ -20,7 +20,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-primary-codeql.yml b/.github/workflows/pr-check-primary-codeql.yml index 82c46f4e8..b0b6a7a8a 100644 --- a/.github/workflows/pr-check-primary-codeql.yml +++ b/.github/workflows/pr-check-primary-codeql.yml @@ -37,7 +37,7 @@ jobs: uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0.1 - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-primary-test-files.yml b/.github/workflows/pr-check-primary-test-files.yml index 66b48e5d7..5efb6ca3e 100644 --- a/.github/workflows/pr-check-primary-test-files.yml +++ b/.github/workflows/pr-check-primary-test-files.yml @@ -25,7 +25,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-secondary-deps-test.yml b/.github/workflows/pr-check-secondary-deps-test.yml index 12bc50eb2..55ab300b0 100644 --- a/.github/workflows/pr-check-secondary-deps-test.yml +++ b/.github/workflows/pr-check-secondary-deps-test.yml @@ -23,7 +23,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-secondary-examples.yml b/.github/workflows/pr-check-secondary-examples.yml index 259b49f42..c32b09ee0 100644 --- a/.github/workflows/pr-check-secondary-examples.yml +++ b/.github/workflows/pr-check-secondary-examples.yml @@ -14,7 +14,7 @@ jobs: runs-on: ${{ (github.repository_owner != 'hiero-ledger' || (github.event_name == 'pull_request' && github.event.pull_request.head.repo.fork)) && 'ubuntu-latest' || 'hl-sdk-py-lin-md' }} steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-secondary-tck-test.yml b/.github/workflows/pr-check-secondary-tck-test.yml index 9d30a0a5a..d5f3cfd6b 100644 --- a/.github/workflows/pr-check-secondary-tck-test.yml +++ b/.github/workflows/pr-check-secondary-tck-test.yml @@ -29,7 +29,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pr-check-secondary-unit-integration-test.yml b/.github/workflows/pr-check-secondary-unit-integration-test.yml index 8e87f223b..bcee6a87d 100644 --- a/.github/workflows/pr-check-secondary-unit-integration-test.yml +++ b/.github/workflows/pr-check-secondary-unit-integration-test.yml @@ -41,7 +41,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit @@ -104,7 +104,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit @@ -175,7 +175,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/pre-commit.yml b/.github/workflows/pre-commit.yml index 7360faf88..25263a61b 100644 --- a/.github/workflows/pre-commit.yml +++ b/.github/workflows/pre-commit.yml @@ -14,7 +14,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/publish.yml b/.github/workflows/publish.yml index b8abcbe33..c66dccc68 100644 --- a/.github/workflows/publish.yml +++ b/.github/workflows/publish.yml @@ -15,7 +15,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit @@ -62,7 +62,7 @@ jobs: steps: - name: Harden the runner (Audit all outbound calls) - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/release-pr-coderabbit-gate.yml b/.github/workflows/release-pr-coderabbit-gate.yml index f02764d62..0a64c88ed 100644 --- a/.github/workflows/release-pr-coderabbit-gate.yml +++ b/.github/workflows/release-pr-coderabbit-gate.yml @@ -25,7 +25,7 @@ jobs: steps: - name: Harden the runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/sync-issue-labels-add.yml b/.github/workflows/sync-issue-labels-add.yml index 1b01e8904..b36977d98 100644 --- a/.github/workflows/sync-issue-labels-add.yml +++ b/.github/workflows/sync-issue-labels-add.yml @@ -23,7 +23,7 @@ jobs: steps: - name: Harden Runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/sync-issue-labels-compute.yml b/.github/workflows/sync-issue-labels-compute.yml index 8739bcb83..c64f909e1 100644 --- a/.github/workflows/sync-issue-labels-compute.yml +++ b/.github/workflows/sync-issue-labels-compute.yml @@ -17,7 +17,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Harden Runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit diff --git a/.github/workflows/unassign-on-comment.yml b/.github/workflows/unassign-on-comment.yml index ba43ba223..6c9d02d37 100644 --- a/.github/workflows/unassign-on-comment.yml +++ b/.github/workflows/unassign-on-comment.yml @@ -22,7 +22,7 @@ jobs: steps: - name: Harden runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 with: egress-policy: audit diff --git a/.github/workflows/working-on-comment.yml b/.github/workflows/working-on-comment.yml index 7f736f045..87013e5e1 100644 --- a/.github/workflows/working-on-comment.yml +++ b/.github/workflows/working-on-comment.yml @@ -26,7 +26,7 @@ jobs: cancel-in-progress: false steps: - name: Harden Runner - uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0 + uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0 with: egress-policy: audit