Since this is already researched by @KevinEyo1 in https://github.com/MarkBind/markbind/issues/2488 and implemented in https://github.com/MarkBind/markbind/pull/2510, let's also update our reusable workflow to follow these security conventions.