Skip to content

build(deps): Bump @actions/github from 8.0.1 to 9.1.1 - #5

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/actions/github-9.1.1
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/actions/github-9.1.1

build(deps): Bump @actions/github from 8.0.1 to 9.1.1

374f007
Select commit
Loading
Failed to load commit list.
StepSecurity Actions Security / StepSecurity Harden-Runner succeeded Sep 22, 2026 in 1m 32s

No anomalous activity on CI/CD runners

No new Harden-Runner detections for this pull request.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

馃搵 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
stepsecurity_action_sync_upstream.yml 35720091765 - - Harden-Runner not enabled
stepsecurity_claude_review.yml 35720091790 1 4 View Insights
stepsecurity_action_sync_upstream.yml 35720091155 - - Harden-Runner not enabled
stepsecurity_claude_review.yml 35720091453 1 4 View Insights
stepsecurity_claude_review.yml 35720090391 1 4 View Insights
stepsecurity_action_sync_upstream.yml 35720090328 - - Harden-Runner not enabled
stepsecurity_action_sync_upstream.yml 35720090156 - - Harden-Runner not enabled
stepsecurity_action_sync_upstream.yml 35720091457 - - Harden-Runner not enabled
stepsecurity_claude_review.yml 35720091293 1 4 View Insights
stepsecurity_claude_review.yml 35720090160 1 4 View Insights
ci.yml 35720089895 2 3 View Insights
test.yml 35720089901 2 3 View Insights
dependency-review.yml 35720089897 3 3 View Insights
codeql.yml 35720089924 3 3 View Insights

馃摎 Learn More

You can learn more about this GitHub check here