Skip to content
This repository was archived by the owner on Apr 8, 2025. It is now read-only.

Commit 43f436c

Browse files
committed
remove Harden Runner
harden runner uses systemctl commands which wont work in pods Signed-off-by: John O'Loughlin <[email protected]>
1 parent 52bbb2f commit 43f436c

File tree

4 files changed

+7
-34
lines changed

4 files changed

+7
-34
lines changed

Diff for: .github/workflows/codeql.yml

+4-6
Original file line numberDiff line numberDiff line change
@@ -26,11 +26,9 @@ jobs:
2626
language: [ go ]
2727

2828
steps:
29-
- name: Harden Runner
30-
uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 # v2.5.0
31-
with:
32-
egress-policy: audit
33-
29+
- name: Set up Go
30+
uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # v4.1.0
31+
go-version: 1.20.1
3432
- name: Checkout
3533
uses: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9 # v3.5.2
3634

@@ -46,4 +44,4 @@ jobs:
4644
- name: Perform CodeQL Analysis
4745
uses: github/codeql-action/analyze@0ba4244466797eb048eb91a6cd43d5c03ca8bd05 # v2.3.3
4846
with:
49-
category: "/language:${{ matrix.language }}"
47+
category: "/language:${{ matrix.language }}"

Diff for: .github/workflows/dependency-review.yml

-5
Original file line numberDiff line numberDiff line change
@@ -16,11 +16,6 @@ jobs:
1616
dependency-review:
1717
runs-on: ubuntu-latest
1818
steps:
19-
- name: Harden Runner
20-
uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 # v2.5.0
21-
with:
22-
egress-policy: audit
23-
2419
- name: 'Checkout Repository'
2520
uses: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9 # v3.5.2
2621
- name: 'Dependency Review'

Diff for: .github/workflows/scorecard.yml

-5
Original file line numberDiff line numberDiff line change
@@ -31,11 +31,6 @@ jobs:
3131
# actions: read
3232

3333
steps:
34-
- name: Harden Runner
35-
uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 # v2.5.0
36-
with:
37-
egress-policy: audit
38-
3934
- name: "Checkout code"
4035
uses: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9 # v3.1.0
4136
with:

Diff for: .github/workflows/static-scan.yml

+3-18
Original file line numberDiff line numberDiff line change
@@ -6,10 +6,10 @@ jobs:
66
name: Lint
77
runs-on: ubuntu-latest
88
steps:
9-
- name: Harden Runner
10-
uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 # v2.5.0
9+
- name: Set up Go
10+
uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # v4.1.0
1111
with:
12-
egress-policy: audit
12+
go-version: 1.20.1
1313

1414
- uses: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9 # v3.5.3
1515
- name: remove deployer container from dockerfile
@@ -32,11 +32,6 @@ jobs:
3232
name: Shellcheck
3333
runs-on: ubuntu-latest
3434
steps:
35-
- name: Harden Runner
36-
uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 # v2.5.0
37-
with:
38-
egress-policy: audit
39-
4035
- uses: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9 # v3.5.3
4136
- name: Run ShellCheck
4237
uses: ludeeus/action-shellcheck@00cae500b08a931fb5698e11e79bfbd38e612a38 # master
@@ -45,11 +40,6 @@ jobs:
4540
runs-on: ubuntu-latest
4641
name: Hadolint
4742
steps:
48-
- name: Harden Runner
49-
uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 # v2.5.0
50-
with:
51-
egress-policy: audit
52-
5343
- uses: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9
5444
- uses: hadolint/[email protected]
5545
name: Run Hadolint
@@ -60,11 +50,6 @@ jobs:
6050
go-check:
6151
runs-on: ubuntu-latest
6252
steps:
63-
- name: Harden Runner
64-
uses: step-security/harden-runner@cba0d00b1fc9a034e1e642ea0f1103c282990604 # v2.5.0
65-
with:
66-
egress-policy: audit
67-
6853
- uses: actions/checkout@c85c95e3d7251135ab7dc9ce3241c5835cc595a9 # v3.5.2
6954

7055
- name: remove deployer container from dockerfile

0 commit comments

Comments
 (0)