Skip to content

chore(actions)(deps): Bump step-security/harden-runner from 2.19.4 to 2.20.0 in the security-actions group across 1 directory - #11

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/security-actions-35c9f0a586
Open

chore(actions)(deps): Bump step-security/harden-runner from 2.19.4 to 2.20.0 in the security-actions group across 1 directory#11
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/security-actions-35c9f0a586

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 27, 2026

Copy link
Copy Markdown
Contributor

Bumps the security-actions group with 1 update in the / directory: step-security/harden-runner.

Updates step-security/harden-runner from 2.19.4 to 2.20.0

Release notes

Sourced from step-security/harden-runner's releases.

v2.20.0

What's Changed

  • Support for block policy for MacOS and Windows GitHub-hosted runners
  • Support for Bitrise MacOS GitHub Actions runners
  • HTTPS monitoring support for Bun for Linux runners (enterprise tier)

Full Changelog: step-security/harden-runner@v2.19.4...v2.20.0

Commits
  • bf7454d Merge pull request #673 from step-security/fix/aggregate-error-startup-hang
  • 1188420 Update non-TLS agent to v0.16.2
  • 162cfea Update non-TLS agent to v0.16.1
  • eb9e1f4 Bring macOS runner updates from PR 674
  • 1a10b01 Update Windows agent to v1.0.7
  • 8b4a105 Apply npm audit fixes with release-age cooldown
  • 3626e03 Default TLS status check failures to enabled
  • 100e08b Update agent-ebpf to v1.8.12
  • 774f75f Update agent to v1.8.9
  • f312657 Extend missing-agent-dir guard to Linux and macOS cleanup paths
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github-actions Pull requests that update GitHub Actions code labels Jul 27, 2026
Bumps the security-actions group with 1 update in the / directory: [step-security/harden-runner](https://github.com/step-security/harden-runner).


Updates `step-security/harden-runner` from 2.19.4 to 2.20.0
- [Release notes](https://github.com/step-security/harden-runner/releases)
- [Commits](step-security/harden-runner@v2.19.4...bf7454d)

---
updated-dependencies:
- dependency-name: step-security/harden-runner
  dependency-version: 2.20.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: security-actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title chore(actions)(deps): Bump step-security/harden-runner from 2.19.4 to 2.20.0 in the security-actions group chore(actions)(deps): Bump step-security/harden-runner from 2.19.4 to 2.20.0 in the security-actions group across 1 directory Aug 3, 2026
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/security-actions-35c9f0a586 branch from 1fdae66 to b6be678 Compare August 3, 2026 09:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github-actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants