From c53de93f8ed20c4b6e8367ff75b3f1af865b5a52 Mon Sep 17 00:00:00 2001 From: Joshua Rich Date: Sat, 12 Oct 2024 19:33:39 +1000 Subject: [PATCH] ci(github): :bug: don't disable sudo for build job --- .github/workflows/build.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 7c36a413f..d53cb077c 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -60,6 +60,7 @@ jobs: uses: step-security/harden-runner@446798f8213ac2e75931c1b0769676d927801858 # v2.10.0 with: egress-policy: block + disable-sudo: false allowed-endpoints: > api.github.com:443 auth.docker.io:443