Diff
1diff --git a/.github/workflows/dependencies.yml b/.github/workflows/dependencies.yml
2index b54781da7ae445ca2f66c4ef8fd340158c59962c..27bc366b757d88f8554f9b466a0bf63b8e37dc40 100644
3--- a/.github/workflows/dependencies.yml
4+++ b/.github/workflows/dependencies.yml
5@@ -16,7 +16,7 @@ jobs:
6 contents: write # this is needed to push commits and branches
7 steps:
8 - name: Harden the runner (Audit all outbound calls)
9- uses: step-security/harden-runner@a5ad31d6a139d249332a2605b85202e8c0b78450 # v2.19.1
10+ uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3
11 with:
12 egress-policy: audit
13
14diff --git a/.github/workflows/installer.yml b/.github/workflows/installer.yml
15index 6431134c15edb2d3aa4975904384dfbf73bd061f..75e5b4886e6326e96298f0abe381c8c7869d27fa 100644
16--- a/.github/workflows/installer.yml
17+++ b/.github/workflows/installer.yml
18@@ -26,7 +26,7 @@ jobs:
19 - macos-latest
20 steps:
21 - name: Harden the runner (Audit all outbound calls)
22- uses: step-security/harden-runner@a5ad31d6a139d249332a2605b85202e8c0b78450 # v2.19.1
23+ uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3
24 with:
25 egress-policy: audit
26
27@@ -47,7 +47,7 @@ jobs:
28 - test
29 steps:
30 - name: Harden the runner (Audit all outbound calls)
31- uses: step-security/harden-runner@a5ad31d6a139d249332a2605b85202e8c0b78450 # v2.19.1
32+ uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3
33 with:
34 egress-policy: audit
35
36diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml
37index 1356bcd4eb93bb8400694a36409759796016afbd..ce74395b5ed3730a6899bfadb36724a0f062b5df 100644
38--- a/.github/workflows/main.yml
39+++ b/.github/workflows/main.yml
40@@ -24,7 +24,7 @@ jobs:
41 if: github.repository == 'ohmyzsh/ohmyzsh'
42 steps:
43 - name: Harden the runner (Audit all outbound calls)
44- uses: step-security/harden-runner@a5ad31d6a139d249332a2605b85202e8c0b78450 # v2.19.1
45+ uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3
46 with:
47 egress-policy: audit
48
49diff --git a/.github/workflows/project.yml b/.github/workflows/project.yml
50index 35ffc375cfa9771da7d779225897ee55a90a8af3..74d11c257f6396085df7f925c408c4e9b85c509e 100644
51--- a/.github/workflows/project.yml
52+++ b/.github/workflows/project.yml
53@@ -17,7 +17,7 @@ jobs:
54 if: github.repository == 'ohmyzsh/ohmyzsh'
55 steps:
56 - name: Harden the runner (Audit all outbound calls)
57- uses: step-security/harden-runner@a5ad31d6a139d249332a2605b85202e8c0b78450 # v2.19.1
58+ uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3
59 with:
60 egress-policy: audit
61 - name: Authenticate as @ohmyzsh
62diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml
63index 62b4460888e0a051b262fdd80b4d73d9bfa4cfe4..01e8a7fbdb98f14a6e7a3adb682e4ed2b544ded0 100644
64--- a/.github/workflows/scorecard.yml
65+++ b/.github/workflows/scorecard.yml
66@@ -36,7 +36,7 @@ jobs:
67
68 steps:
69 - name: Harden the runner (Audit all outbound calls)
70- uses: step-security/harden-runner@a5ad31d6a139d249332a2605b85202e8c0b78450 # v2.19.1
71+ uses: step-security/harden-runner@ab7a9404c0f3da075243ca237b5fac12c98deaa5 # v2.19.3
72 with:
73 egress-policy: audit
74