01Runner hardening checklists and ephemeral environment patterns
02Least-privilege GITHUB_TOKEN permission templates
03SHA-based action pinning for supply chain integrity
04Secure trigger configuration to prevent fork-based attacks
050 GitHub stars
06OIDC federation patterns for secret-less cloud access