Skip to content

Bump step-security/harden-runner from 2.8.1 to 2.10.1 #209

Bump step-security/harden-runner from 2.8.1 to 2.10.1

Bump step-security/harden-runner from 2.8.1 to 2.10.1 #209

Workflow file for this run

name: fuzz-micro-job
on:
push:
branches: [ '**' ]
pull_request:
branches: [ '**' ]
permissions:
contents: read
jobs:
fuzz:
runs-on: ci-test
if: ${{ github.repository != 'intel/pcm' }}
steps:
- name: Harden Runner
uses: step-security/harden-runner@91182cccc01eb5e619899d80e4e971d6181294a7 # v2.10.1
with:
egress-policy: audit
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
with:
submodules: recursive
- name: Build and test
run: |
cmake --version
set -o pipefail
mkdir build
cd build
bash ${{ github.workspace }}/tests/fuzz.sh 5 2>&1 | tee fuzz-log.txt
cd ..
- name: Show report
run: |
cat build/report.txt
echo "Fuzzing completed"
- name: upload-artifact
uses: actions/upload-artifact@0b2256b8c012f0828dc542b3febcab082c67f72b # v4.3.4
with:
name: fuzz-log-${{ github.sha }}
path: "build/fuzz-log.txt"