www.stepsecurity.io 9/1/2026, 1:01:35 AM · external

Harden Runner rolls out deny list egress for CI pipelines

Harden Runner rolls out deny list egress for CI pipelines
CyberSIXT Evidence Panel Source marked as original reporting

THE blog post introduces the new deny list egress policies for the Harden-Runner tool, facilitating better control over continuous integration (CI) environments by allowing users to block specified endpoints while keeping everything else accessible. It highlights the importance of deny lists in comparison to allow lists, addressing challenges teams face with comprehensive allow lists.

Key features include the ability to block wildcard domains, IP addresses, and the organizational convenience of a centralized deny list policy. Use cases include preventing bypass of package proxies and minimizing exposure to unwanted destinations during CI workflows. The post also discusses limitations of deny lists and provides guidance for getting started with deny list policies.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline