Showing 0 Items
Explore how to use GitHub Actions secrets securely by restricting organizational secrets, using secrets exclusively for sensitive data, and implementing least privileged access.
Delve into the intricacies of GitHub Actions Security by forking the GitHub Actions Goat project and learning by doing. All you need to follow the hands-on tutorials is your GitHub Account
Automate minimum GitHub token permissions using eBPF and secure your CI/CD pipelines with precision
Join the SecureWorkflows Project: A Call to Action for GitHub Action Owners to Strengthen Open Source Software Supply Chain Security
StepSecurity Harden-Runner now secures 2,000+ open-source projects on GitHub including those of CISA, Google, Microsoft, Datadog, and more
Understand the risks of GitHub Actions in public repositories and learn how to implement best practices to safeguard your CI/CD environment from vulnerabilities and attacks
Introducing Harden-Runner for self-hosted VM runners with battle-tested security, seamless integration and precise network filtering for powerful CI/CD security
Harden Runner has secured a total of 1,236,972 CI/ CD pipeline executions, a testament to its robust performance and scalability