resilience-cyber-security/Egress Guard

Whitelist outbound IPs for the remainder of a job and log blocked egress attempts.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
allowlistComma/space/newline separated hostnames or IPs/CIDRs to allow. Defaults to common package registries. To extend defaults, make the first entry "+default". no+default
mode"enforce" to reject non-allowlisted egress, "training" to log and allow.noenforce
phase"setup" to install rules, "report" to summarize logged destinations, "stop" to terminate refresh.nosetup
refresh_interval_secondsSeconds between allowlist refreshes (0 disables refresh loop).no300
github_meta_allowlistWhen "true", include GitHub meta CIDRs in the allowlist.nofalse

no outputs