From 05eeeed820d69da066bab01e0a542aee613653e1 Mon Sep 17 00:00:00 2001 From: Artem Goncharov Date: Tue, 18 Nov 2025 11:35:57 +0100 Subject: [PATCH 1/2] chore(ci): Add environment to release-plz job (#1526) --- .github/workflows/release-plz.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/release-plz.yml b/.github/workflows/release-plz.yml index adf84932c..36bf4ccea 100644 --- a/.github/workflows/release-plz.yml +++ b/.github/workflows/release-plz.yml @@ -11,7 +11,9 @@ on: jobs: release-plz: name: Release-plz + environment: release runs-on: ubuntu-latest + if: github.repository_owner == "gtema" permissions: id-token: write pull-requests: write From 4e4072f22200e20b2c9344fbfa7ace1af09b557c Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Tue, 18 Nov 2025 10:37:03 +0000 Subject: [PATCH 2/2] chore(deps): update step-security/harden-runner digest to 95d9a5d --- .github/workflows/release.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index cbf7142af..25bb8536c 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -133,7 +133,7 @@ jobs: with: toolchain: stable - name: "Harden Runner" - uses: "step-security/harden-runner@92c522aaa6f53af082553dedc1596c80b71aba33" + uses: "step-security/harden-runner@95d9a5deda9de15063e7595e9719c11c38c90ae2" with: "egress-policy": "audit" - name: Install dist