Skip to content

chore(deps): Bump step-security/harden-runner from 2.16.0 to 2.16.1

1de5e89
Select commit
Loading
Failed to load commit list.
Open

chore(deps): Bump step-security/harden-runner from 2.16.0 to 2.16.1 #67

chore(deps): Bump step-security/harden-runner from 2.16.0 to 2.16.1
1de5e89
Select commit
Loading
Failed to load commit list.
StepSecurity Actions Security / StepSecurity Harden-Runner failed Apr 21, 2026 in 4m 57s

⚠️ Unexpected network calls from CI/CD runners

Harden-Runner has generated new alerts for GitHub Actions workflow runs in this pull request. These findings may indicate malicious activities or misconfigurations, so prompt analysis is recommended.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

Click here to approve this check run

The following anomalous outbound network calls were detected.

Endpoint Workflow Workflow Run Insights status
blob.bn9prdstrz04a.store.core.windows.net:443 example-basic.yml Insights URL ⚠️ Anomalous

🔎 Potential next steps

Anomalous Network Call

To investigate and triage the detection, please follow the runbook at https://docs.stepsecurity.io/harden-runner/runbooks/anomalous-outbound-network-calls

📋 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
example-build-artifacts.yml 24706795555 20 4 View Insights
example-recording.yml 24706795523 - - Harden-Runner not enabled
example-custom-ci-build-id.yml 24706795514 - - Harden-Runner not enabled
auto_cherry_pick.yml 24706795683 - - Harden-Runner not enabled
example-config.yml 24706795535 8 2 View Insights
example-yarn-modern.yml 24706795504 11 3 View Insights
example-basic.yml 24706795558 24 3 View Insights
example-yarn-modern-pnp.yml 24706795591 11 3 View Insights
example-custom-command.yml 24706795566 9 2 View Insights
example-webpack.yml 24706795578 8 2 View Insights
check-dist.yml 24706795533 4 3 View Insights
example-basic-pnpm.yml 24706795525 14 4 View Insights
claude_review.yml 24706795617 1 4 View Insights
example-start-and-pnpm-workspaces.yml 24706795549 8 4 View Insights
example-chrome.yml 24706795576 10 3 View Insights
example-node-versions.yml 24706795668 11 3 View Insights
example-start.yml 24706795509 8 2 View Insights
example-chrome-for-testing.yml 24706795543 9 3 View Insights
example-debug.yml 24706795568 11 2 View Insights
example-component-test.yml 24706795534 8 2 View Insights
example-env.yml 24706795511 8 2 View Insights
example-firefox.yml 24706795527 6 3 View Insights
example-yarn-classic.yml 24706795618 8 3 View Insights
example-start-and-yarn-workspaces.yml 24706795552 8 2 View Insights
example-install-command.yml 24706795621 8 2 View Insights
example-docker.yml 24706795559 - - Harden-Runner not enabled
example-edge.yml 24706795526 10 2 View Insights
dependency-review.yml 24706795530 3 3 View Insights
example-install-only.yml 24706795522 8 3 View Insights
example-quiet.yml 24706795565 9 2 View Insights
example-wait-on.yml 24706795590 13 2 View Insights
codeql.yml 24706795531 3 3 View Insights
check-markdown.yml 24706795512 18 2 View Insights

📚 Learn More

You can learn more about this GitHub check here