Diff
1diff --git a/.github/workflows/dependencies.yml b/.github/workflows/dependencies.yml
2index 8053b7aeee9d602dfb35235ea502875eefbd6b24..8af40663f78161c5a556a81fbce9f0480a1f6c52 100644
3--- a/.github/workflows/dependencies.yml
4+++ b/.github/workflows/dependencies.yml
5@@ -13,7 +13,7 @@ jobs:
6 contents: write # this is needed to push commits and branches
7 steps:
8 - name: Harden the runner (Audit all outbound calls)
9- uses: step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16.0
10+ uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
11 with:
12 egress-policy: audit
13
14diff --git a/.github/workflows/installer.yml b/.github/workflows/installer.yml
15index cead84c6257e6c9ae49dc937936f23a3daf36fba..504d9bba0f4df66e44f713c83cd511276435fc1e 100644
16--- a/.github/workflows/installer.yml
17+++ b/.github/workflows/installer.yml
18@@ -26,7 +26,7 @@ jobs:
19 - macos-latest
20 steps:
21 - name: Harden the runner (Audit all outbound calls)
22- uses: step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16.0
23+ uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
24 with:
25 egress-policy: audit
26
27@@ -47,7 +47,7 @@ jobs:
28 - test
29 steps:
30 - name: Harden the runner (Audit all outbound calls)
31- uses: step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16.0
32+ uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
33 with:
34 egress-policy: audit
35
36diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml
37index e0d9a721963cb05af8e221e02925d4b8db40066a..0c40518729299b0a51deac7e69d5b6b443672ad3 100644
38--- a/.github/workflows/main.yml
39+++ b/.github/workflows/main.yml
40@@ -24,7 +24,7 @@ jobs:
41 if: github.repository == 'ohmyzsh/ohmyzsh'
42 steps:
43 - name: Harden the runner (Audit all outbound calls)
44- uses: step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16.0
45+ uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
46 with:
47 egress-policy: audit
48
49diff --git a/.github/workflows/project.yml b/.github/workflows/project.yml
50index ab9d4d1209a8530d6e326e806650f298243fbcbf..526c55bac2f0cc2db9203cd41000d6b7d95b0845 100644
51--- a/.github/workflows/project.yml
52+++ b/.github/workflows/project.yml
53@@ -17,7 +17,7 @@ jobs:
54 if: github.repository == 'ohmyzsh/ohmyzsh'
55 steps:
56 - name: Harden the runner (Audit all outbound calls)
57- uses: step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16.0
58+ uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
59 with:
60 egress-policy: audit
61 - name: Authenticate as @ohmyzsh
62diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml
63index a7d573a7c9275cbeca96adb804ece79d8f2460ea..197bdd3149ec717b79d1c8afafbf2e1135be50c1 100644
64--- a/.github/workflows/scorecard.yml
65+++ b/.github/workflows/scorecard.yml
66@@ -36,7 +36,7 @@ jobs:
67
68 steps:
69 - name: Harden the runner (Audit all outbound calls)
70- uses: step-security/harden-runner@fa2e9d605c4eeb9fcad4c99c224cee0c6c7f3594 # v2.16.0
71+ uses: step-security/harden-runner@fe104658747b27e96e4f7e80cd0a94068e53901d # v2.16.1
72 with:
73 egress-policy: audit
74