Skip to content

feat(node): add disk-based package scanning (lockfile parsing)#156

Open
swarit-stepsecurity wants to merge 2 commits into
step-security:mainfrom
swarit-stepsecurity:swarit/feat/wt/migrate-npm-scanning
Open

feat(node): add disk-based package scanning (lockfile parsing)#156
swarit-stepsecurity wants to merge 2 commits into
step-security:mainfrom
swarit-stepsecurity:swarit/feat/wt/migrate-npm-scanning

Merge branch 'main' into swarit/feat/wt/migrate-npm-scanning

3f35a34
Select commit
Loading
Failed to load commit list.
StepSecurity Actions Security / StepSecurity Harden-Runner succeeded Jun 30, 2026 in 2m 31s

No anomalous activity on CI/CD runners

No new Harden-Runner detections for this pull request.

Details

Harden-Runner monitors all outbound traffic from each job at the DNS and network layers to ensure that CI/CD runners do not communicate with unauthorized destinations.
This reduces the risk of CI/CD secrets and source code being exfiltrated.

📋 Monitored GitHub Actions workflow runs

The following GitHub Actions workflow runs were monitored as part of this pull request.

Workflow Run ID Unique Destinations Actions Used Detailed Insights
tests.yml 28439722700 26 4 View Insights
msi-smoke.yml 28439722619 4 4 View Insights
gosec.yml 28439722608 3 5 View Insights

📚 Learn More

You can learn more about this GitHub check here