Skip to content

feat: added banner and update subscription check to make maintained a…

21be1b8
Select commit
Loading
Failed to load commit list.
Open

feat: added banner and update subscription check to make maintained actions free for public repos #160

feat: added banner and update subscription check to make maintained a…
21be1b8
Select commit
Loading
Failed to load commit list.
StepSecurity Actions Security / StepSecurity Harden-Runner failed Apr 9, 2026 in 37m 14s

⚠️ Unexpected network calls from CI/CD runners

Harden-Runner has generated new alerts for GitHub Actions workflow runs in this pull request. These findings may indicate malicious activities or misconfigurations, so prompt analysis is recommended.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

Click here to approve this check run

The following anomalous outbound network calls were detected.

Endpoint Workflow Workflow Run Insights status
private-user-images.githubusercontent.com:443 claude_review.yml Insights URL ⚠️ Anomalous
claude.ai:443 claude_review.yml Insights URL ⚠️ Anomalous

🔎 Potential next steps

Anomalous Network Call

To investigate and triage the detection, please follow the runbook at https://docs.stepsecurity.io/harden-runner/runbooks/anomalous-outbound-network-calls

📋 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
guarddog.yml 24179221453 26 3 View Insights
auto_cherry_pick.yml 24179221461 - - Harden-Runner not enabled
claude_review.yml 24179221442 1 4 View Insights
lint-pr-title-preview-ignoreLabels.yml 24179221361 - - Harden-Runner not enabled
dependency-review.yml 24179221399 2 3 View Insights
test.yml 24179221360 - - Harden-Runner not enabled
auto_cherry_pick.yml 24179233434 - - Harden-Runner not enabled
claude_review.yml 24179233385 11 4 View Insights
lint-pr-title-preview-validateSingleCommit.yml 24179221374 - - Harden-Runner not enabled
lint-pr-title-preview-outputErrorMessage.yml 24179221400 - - Harden-Runner not enabled
codeql.yml 24179221414 2 3 View Insights
lint-pr-title-preview.yml 24179221385 - - Harden-Runner not enabled
lint-pr-title.yml 24179221367 - - Harden-Runner not enabled
lint-pr-title-preview-ignoreLabels.yml 24179233086 - - Harden-Runner not enabled
lint-pr-title-preview-all.yml 24179221419 - - Harden-Runner not enabled

📚 Learn More

You can learn more about this GitHub check here