aboutsummaryrefslogtreecommitdiffstats
path: root/.github/workflows/codeql-analysis.yml
diff options
context:
space:
mode:
Diffstat (limited to '.github/workflows/codeql-analysis.yml')
-rw-r--r--.github/workflows/codeql-analysis.yml4
1 files changed, 3 insertions, 1 deletions
diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml
index 4b9aaa7d6..0f9c0f740 100644
--- a/.github/workflows/codeql-analysis.yml
+++ b/.github/workflows/codeql-analysis.yml
@@ -75,14 +75,16 @@ jobs:
75 75
76 steps: 76 steps:
77 - name: Harden Runner 77 - name: Harden Runner
78 uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 78 uses: step-security/harden-runner@8ca2b8b2ece13480cda6dacd3511b49857a23c09
79 with: 79 with:
80 disable-sudo: true 80 disable-sudo: true
81 egress-policy: block 81 egress-policy: block
82 allowed-endpoints: > 82 allowed-endpoints: >
83 api.github.com:443 83 api.github.com:443
84 files.pythonhosted.org:443
84 github.com:443 85 github.com:443
85 objects.githubusercontent.com:443 86 objects.githubusercontent.com:443
87 pypi.org:443
86 uploads.github.com:443 88 uploads.github.com:443
87 89
88 - name: Checkout repository 90 - name: Checkout repository