More control over GitHub-hosted runners
Organizations can now control who can use GitHub-hosted runners in Actions. Admins can disable standard runner labels and manage runner access more granularly.
Organizations now have more control over who can use GitHub-hosted runners in Actions. Admins can now disable the standard labels for hosted runners such as ubuntu-latest, as well as add macOS runners to runner groups.
What you can do with macOS runners
- Restrict access to macOS runners: Limit which organizations, repositories, or workflows can use specific macOS runners through group-level permissions.
- Enforce concurrency limits: Control how many macOS jobs can run simultaneously across teams and projects to manage capacity and costs.
- Route jobs through policy: Reference runner groups by name in workflows to direct macOS jobs only to runners that meet your security requirements.
Disable standard hosted runners
To help admins enforce the use of runner groups (including macOS in runner groups), you now have the ability to disable standard hosted runners.
To learn how to disable standard hosted runners and the implications for your concurrency, see the runner groups documentation.
Availability
This feature is available on Team and Enterprise plans. Network configurations are not supported for macOS runners at this time.
The post More control over your GitHub-hosted runners appeared first on The GitHub Blog.
Source: original entry ↗
More from GitHub
Follow GitHub to get its new changes in your feed and email digest.
Claude Haiku 5.5 now available in GitHub Copilot
Claude Haiku 5.5, Anthropic's lightweight model, is now generally available in GitHub Copilot for fast, high-volume tasks like subagents, quick edits, and terminal operations.
Purpose-built model for leaked secret detection
GitHub introduced a new purpose-built model for detecting leaked secrets that provides context-aware detection to keep pace with modern software development practices, including AI-assisted coding.
Local sandboxing for GitHub Copilot now generally available
GitHub Copilot's local sandboxing feature is now generally available across GitHub Copilot CLI, the GitHub Copilot app, and VS Code sessions using Agent Host, providing developers with a secure environment for testing and development.