Skip to content

Commit 1b97bed

Browse files
Copilotnomeguy
andcommitted
Add workflow permissions to fix security issues
Co-authored-by: nomeguy <85475922+nomeguy@users.noreply.github.com>
1 parent b416b96 commit 1b97bed

File tree

1 file changed

+8
-0
lines changed

1 file changed

+8
-0
lines changed

.github/workflows/ci.yml

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -5,6 +5,8 @@ on: [push, pull_request]
55
jobs:
66
lint:
77
runs-on: ubuntu-latest
8+
permissions:
9+
contents: read
810
steps:
911
- uses: actions/checkout@v2
1012

@@ -23,6 +25,8 @@ jobs:
2325
coverage:
2426
needs: [lint]
2527
runs-on: ubuntu-latest
28+
permissions:
29+
contents: read
2630
steps:
2731
- uses: actions/checkout@v2
2832

@@ -51,6 +55,8 @@ jobs:
5155
test:
5256
needs: [lint]
5357
runs-on: ubuntu-latest
58+
permissions:
59+
contents: read
5460
strategy:
5561
matrix:
5662
node: ['18', '20']
@@ -76,6 +82,8 @@ jobs:
7682
semantic-release:
7783
needs: [lint, test, coverage]
7884
runs-on: ubuntu-latest
85+
permissions:
86+
contents: write
7987
steps:
8088
- uses: actions/checkout@v2
8189

0 commit comments

Comments
 (0)