98fe9b81a62ed75baf25cf23aa41e338a83bec6d

Author
dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Committer
GitHub <noreply@github.com>
Date

Message

chore(deps): bump step-security/harden-runner from 2.19.4 to 2.20.0 (#13863)

Signed-off-by: dependabot[bot] <support@github.com>

Diff

 1diff --git a/.github/workflows/dependencies.yml b/.github/workflows/dependencies.yml
 2index 5bcaabfbc5ba479c7c21e7c90e0d4866433e4441..21fc9756feb6317ec9df02c8bd0b26310b83f8a5 100644
 3--- a/.github/workflows/dependencies.yml
 4+++ b/.github/workflows/dependencies.yml
 5@@ -16,7 +16,7 @@ jobs:
 6       contents: write # this is needed to push commits and branches
 7     steps:
 8       - name: Harden the runner (Audit all outbound calls)
 9-        uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4
10+        uses: step-security/harden-runner@bf7454d06d71f1098171f2acdf0cd4708d7b5920 # v2.20.0
11         with:
12           egress-policy: audit
13 
14diff --git a/.github/workflows/installer.yml b/.github/workflows/installer.yml
15index f0d1abb9b5990ff57fcf20f7d9626f5d3846e54a..017d26213d6c675cf64a48a1839769a1824b891b 100644
16--- a/.github/workflows/installer.yml
17+++ b/.github/workflows/installer.yml
18@@ -26,7 +26,7 @@ jobs:
19           - macos-latest
20     steps:
21       - name: Harden the runner (Audit all outbound calls)
22-        uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4
23+        uses: step-security/harden-runner@bf7454d06d71f1098171f2acdf0cd4708d7b5920 # v2.20.0
24         with:
25           egress-policy: audit
26 
27@@ -47,7 +47,7 @@ jobs:
28       - test
29     steps:
30       - name: Harden the runner (Audit all outbound calls)
31-        uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4
32+        uses: step-security/harden-runner@bf7454d06d71f1098171f2acdf0cd4708d7b5920 # v2.20.0
33         with:
34           egress-policy: audit
35 
36diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml
37index 52c297f3fbb8a30a43431d130fb45548a7b16b25..8b1835f72eef2179de6f39c01c41230a0ce6e0de 100644
38--- a/.github/workflows/main.yml
39+++ b/.github/workflows/main.yml
40@@ -24,7 +24,7 @@ jobs:
41     if: github.repository == 'ohmyzsh/ohmyzsh'
42     steps:
43       - name: Harden the runner (Audit all outbound calls)
44-        uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4
45+        uses: step-security/harden-runner@bf7454d06d71f1098171f2acdf0cd4708d7b5920 # v2.20.0
46         with:
47           egress-policy: audit
48 
49diff --git a/.github/workflows/project.yml b/.github/workflows/project.yml
50index e3117769f08cc1dcf471b7f35bd6784fd90252e7..b9489cf6fba42cd58033a0d1d8a6e68ddfe4c4dd 100644
51--- a/.github/workflows/project.yml
52+++ b/.github/workflows/project.yml
53@@ -17,7 +17,7 @@ jobs:
54     if: github.repository == 'ohmyzsh/ohmyzsh'
55     steps:
56       - name: Harden the runner (Audit all outbound calls)
57-        uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4
58+        uses: step-security/harden-runner@bf7454d06d71f1098171f2acdf0cd4708d7b5920 # v2.20.0
59         with:
60           egress-policy: audit
61       - name: Authenticate as @ohmyzsh
62diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml
63index 0770ba974f47be2e9abf8d67541917729e0ae159..f31221f88550ce7fe5142e2eef353b16e34e1daa 100644
64--- a/.github/workflows/scorecard.yml
65+++ b/.github/workflows/scorecard.yml
66@@ -36,7 +36,7 @@ jobs:
67 
68     steps:
69       - name: Harden the runner (Audit all outbound calls)
70-        uses: step-security/harden-runner@9af89fc71515a100421586dfdb3dc9c984fbf411 # v2.19.4
71+        uses: step-security/harden-runner@bf7454d06d71f1098171f2acdf0cd4708d7b5920 # v2.20.0
72         with:
73           egress-policy: audit
74