1fee750c3bf53164ea93f564fe53764bb727f9ea

Author
dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Committer
GitHub <noreply@github.com>
Date

Message

chore(deps): bump step-security/harden-runner from 2.13.3 to 2.14.0 (#13483)

Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

Diff

 1diff --git a/.github/workflows/dependencies.yml b/.github/workflows/dependencies.yml
 2index 149c7fef7f23856d11467de1facb11a9ee8db5e0..8d8f5cc73bbfdcb92d118b685ef33a8a654c748d 100644
 3--- a/.github/workflows/dependencies.yml
 4+++ b/.github/workflows/dependencies.yml
 5@@ -13,7 +13,7 @@ jobs:
 6       contents: write # this is needed to push commits and branches
 7     steps:
 8       - name: Harden the runner (Audit all outbound calls)
 9-        uses: step-security/harden-runner@df199fb7be9f65074067a9eb93f12bb4c5547cf2 # v2.13.3
10+        uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
11         with:
12           egress-policy: audit
13 
14diff --git a/.github/workflows/installer.yml b/.github/workflows/installer.yml
15index dcf5b52d8e81f485adee50cdfbec39e82d9198c0..eef5bf3227eba84b112cff76434869bd97b5cb73 100644
16--- a/.github/workflows/installer.yml
17+++ b/.github/workflows/installer.yml
18@@ -26,7 +26,7 @@ jobs:
19           - macos-latest
20     steps:
21       - name: Harden the runner (Audit all outbound calls)
22-        uses: step-security/harden-runner@df199fb7be9f65074067a9eb93f12bb4c5547cf2 # v2.13.3
23+        uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
24         with:
25           egress-policy: audit
26 
27@@ -47,7 +47,7 @@ jobs:
28       - test
29     steps:
30       - name: Harden the runner (Audit all outbound calls)
31-        uses: step-security/harden-runner@df199fb7be9f65074067a9eb93f12bb4c5547cf2 # v2.13.3
32+        uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
33         with:
34           egress-policy: audit
35 
36diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml
37index a8363eceb1a749c184c35be6c55900e51e860339..5917d531616b2a4db01e455264b6cf28039801ac 100644
38--- a/.github/workflows/main.yml
39+++ b/.github/workflows/main.yml
40@@ -24,7 +24,7 @@ jobs:
41     if: github.repository == 'ohmyzsh/ohmyzsh'
42     steps:
43       - name: Harden the runner (Audit all outbound calls)
44-        uses: step-security/harden-runner@df199fb7be9f65074067a9eb93f12bb4c5547cf2 # v2.13.3
45+        uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
46         with:
47           egress-policy: audit
48 
49diff --git a/.github/workflows/project.yml b/.github/workflows/project.yml
50index 9bb3e655069f82aa525a7bf35e1262f7d639d3a6..70597cab652f3106e8858539e475cd732a9601eb 100644
51--- a/.github/workflows/project.yml
52+++ b/.github/workflows/project.yml
53@@ -17,7 +17,7 @@ jobs:
54     if: github.repository == 'ohmyzsh/ohmyzsh'
55     steps:
56       - name: Harden the runner (Audit all outbound calls)
57-        uses: step-security/harden-runner@df199fb7be9f65074067a9eb93f12bb4c5547cf2 # v2.13.3
58+        uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
59         with:
60           egress-policy: audit
61       - name: Authenticate as @ohmyzsh
62diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml
63index 3a1f5c92cb95eb3a0cc786478229c04572debe2f..2ce0dd5ffbb0a03dcc13f9491006d7edf7e1258b 100644
64--- a/.github/workflows/scorecard.yml
65+++ b/.github/workflows/scorecard.yml
66@@ -36,7 +36,7 @@ jobs:
67 
68     steps:
69       - name: Harden the runner (Audit all outbound calls)
70-        uses: step-security/harden-runner@df199fb7be9f65074067a9eb93f12bb4c5547cf2 # v2.13.3
71+        uses: step-security/harden-runner@20cf305ff2072d973412fa9b1e3a4f227bda3c76 # v2.14.0
72         with:
73           egress-policy: audit
74