AST-171789 Fetch GPG signing key from standalone AWS secret - #501
Merged
cx-lior-poterman merged 1 commit intoSep 24, 2026
Merged
StepSecurity Actions Security / StepSecurity Harden-Runner
succeeded
Sep 24, 2026 in 11m 8s
No anomalous activity on CI/CD runners
No new Harden-Runner detections for this pull request.
Details
Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.
📋 Monitored GitHub Actions workflow runs
The following GitHub Actions workflow runs were monitored as part of this pull request.
| Workflow | Run ID | Unique Destinations | Actions Used | Detailed Insights |
|---|---|---|---|---|
| checkmarx-one-scan.yml | 35981460294 | 6 | 2 | View Insights |
| ci.yml | 35981460312 | 23 | 4 | View Insights |
| trufflehog-secret-scan.yml | 35981460303 | 4 | 2 | View Insights |
| github-actions-linter.yml | 35981460280 | 3 | 3 | View Insights |
📚 Learn More
You can learn more about this GitHub check here
Loading