Diff
1diff --git a/.github/workflows/dependencies.yml b/.github/workflows/dependencies.yml
2index 330bdbcf116797e17e0b6f5981ca33153cf91b19..bd492923f3cc4b986fa6c2665732ef9ea9b1109c 100644
3--- a/.github/workflows/dependencies.yml
4+++ b/.github/workflows/dependencies.yml
5@@ -16,7 +16,7 @@ jobs:
6 contents: write # this is needed to push commits and branches
7 steps:
8 - name: Harden the runner (Audit all outbound calls)
9- uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0
10+ uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
11 with:
12 egress-policy: audit
13
14diff --git a/.github/workflows/installer.yml b/.github/workflows/installer.yml
15index 052aa198cb837cf5d75ff7c0627338aacfaaba82..789f44a4341a10686a7844b05371a05bb6650591 100644
16--- a/.github/workflows/installer.yml
17+++ b/.github/workflows/installer.yml
18@@ -26,7 +26,7 @@ jobs:
19 - macos-latest
20 steps:
21 - name: Harden the runner (Audit all outbound calls)
22- uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0
23+ uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
24 with:
25 egress-policy: audit
26
27@@ -47,7 +47,7 @@ jobs:
28 - test
29 steps:
30 - name: Harden the runner (Audit all outbound calls)
31- uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0
32+ uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
33 with:
34 egress-policy: audit
35
36diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml
37index 9bd2ac9ff2b98137a10805e18ddaff8270038c1f..5f458b9e9732a6f47bc3d945006981bafb5f1fe9 100644
38--- a/.github/workflows/main.yml
39+++ b/.github/workflows/main.yml
40@@ -24,7 +24,7 @@ jobs:
41 if: github.repository == 'ohmyzsh/ohmyzsh'
42 steps:
43 - name: Harden the runner (Audit all outbound calls)
44- uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0
45+ uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
46 with:
47 egress-policy: audit
48
49diff --git a/.github/workflows/project.yml b/.github/workflows/project.yml
50index c81567bbb8b37086a1d5d513d1ea2ea674787cb0..5063c78ee3b1341473d91605a482396d0d20290b 100644
51--- a/.github/workflows/project.yml
52+++ b/.github/workflows/project.yml
53@@ -17,7 +17,7 @@ jobs:
54 if: github.repository == 'ohmyzsh/ohmyzsh'
55 steps:
56 - name: Harden the runner (Audit all outbound calls)
57- uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0
58+ uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
59 with:
60 egress-policy: audit
61 - name: Authenticate as @ohmyzsh
62diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml
63index 2e6f7d0acad1389bdc87255b3c2d803135a8b9f8..98377b79828277137da0779907a5ce791b0c9ec2 100644
64--- a/.github/workflows/scorecard.yml
65+++ b/.github/workflows/scorecard.yml
66@@ -36,7 +36,7 @@ jobs:
67
68 steps:
69 - name: Harden the runner (Audit all outbound calls)
70- uses: step-security/harden-runner@6c3c2f2c1c457b00c10c4848d6f5491db3b629df # v2.18.0
71+ uses: step-security/harden-runner@8d3c67de8e2fe68ef647c8db1e6a09f647780f40 # v2.19.0
72 with:
73 egress-policy: audit
74