StepSecurity
⌘Ctrlk
ResourcesCompanyPricingInstall StepSecurity AppLogin
  • OSS Supply Chain Security
  • Dev Machine Guard
GitBook Assistant
GitBook Assistant
GitBook Assistant
Good night

I'm here to help you with the docs.

⌘Ctrli
AI Based on your context
StepSecurity
    • Introduction
    • Guides
      • Deploying Harden-Runner on GitHub-hosted runners
      • How to enable network and runtime monitoring (Harden-Runner) for runners
      • How to restrict network connections to explicitly allowed endpoints
      • How do I authenticate with the StepSecurity app
      • How should I improve the security of third-party actions in my organization
      • How should I reduce the number of Harden-Runner anomalous endpoint alerts
      • How can developers see and fix StepSecurity findings without security’s help?
      • How to Respond to a Compromised npm Package in Your Organization
      • How to Fix a Blocked Endpoint in Your Workflow
    • Developer Experience
    • Admin Experience
    • Security Engineer Experience
    • Getting Started
    • Overview
    • Threat Center
    • Reports
    • Settings
    • Harden-Runner
    • Actions
    • Workflow Run Policies
    • Actions Secret
    • GitHub Checks
    • Orchestrate Security
    • Apps & PATs
    • Artifact Monitor
    • OSS Package Search
    • OSS Security Feed
    • Secure Registry
    • Devices
    • IDE Extensions
    • AI Agents
    • MCP Servers
    • OSS Package Search
    • System Packages
    • Installation Script
    • Admin Console
    • User Settings
    • Short-lived tokens
    • Changelog
    • Enterprise Readiness
    • Partnerships
    • Who's Using Harden-Runner?
Powered by GitBook
  1. Start here

Guides

Deploying Harden-Runner on GitHub-hosted runnersHow to enable network and runtime monitoring (Harden-Runner) for runnersHow to restrict network connections to explicitly allowed endpointsHow do I authenticate with the StepSecurity appHow should I improve the security of third-party actions in my organizationHow should I reduce the number of Harden-Runner anomalous endpoint alertsHow can developers see and fix StepSecurity findings without security’s help?How to Respond to a Compromised npm Package in Your OrganizationHow to Fix a Blocked Endpoint in Your Workflow
PreviousIntroductionNextDeploying Harden-Runner on GitHub-hosted runners

Was this helpful?

LogoLogo

Knowledge & Updates

  • Blog

Company

  • LinkedIn

Legal

  • Privacy Policy
  • Terms

@2026 StepSecurity, Inc.

Was this helpful?