From 0f900233829901a72287a671b3d1862357006fd8 Mon Sep 17 00:00:00 2001 From: Alexey Pustovalov Date: Fri, 9 Feb 2024 16:14:59 +0900 Subject: [PATCH] Prepare universal workflow --- .github/workflows/dockerhub_description.yml | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/.github/workflows/dockerhub_description.yml b/.github/workflows/dockerhub_description.yml index cbd3437c7..ae1485e0c 100644 --- a/.github/workflows/dockerhub_description.yml +++ b/.github/workflows/dockerhub_description.yml @@ -46,7 +46,11 @@ jobs: - name: Block egress traffic uses: step-security/harden-runner@63c24ba6bd7ba022e95695ff85de572c04a18142 # v2.7.0 with: - egress-policy: audit + disable-sudo: true + egress-policy: block + allowed-endpoints: > + github.com:443 + hub.docker.com:443 - name: Checkout repository uses: actions/checkout@v4