Skip to content

Harden actions#5

Open
tmakinen wants to merge 4 commits into
mainfrom
harden-actions
Open

Harden actions#5
tmakinen wants to merge 4 commits into
mainfrom
harden-actions

Conversation

@tmakinen

@tmakinen tmakinen commented Jun 3, 2026

Copy link
Copy Markdown
Contributor
  • Pin external actions to commit hash instead of version tag which is not immutable
  • Enable dependabot for external actions
  • Don't keep git credentials on filesystem after checkout
  • Remove all permissions from workflow and assign minmal permissions at job level
  • Use gh release command directly instead of external action

@tmakinen tmakinen requested a review from a team June 3, 2026 19:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant