Explorar o código

Set GITHUB_TOKEN permissions to read only in OpenAPI workflow

Niels van Velzen %!s(int64=3) %!d(string=hai) anos
pai
achega
07b9ba2bb4
Modificáronse 1 ficheiros con 2 adicións e 0 borrados
  1. 2 0
      .github/workflows/openapi.yml

+ 2 - 0
.github/workflows/openapi.yml

@@ -9,6 +9,7 @@ jobs:
   openapi-head:
     name: OpenAPI - HEAD
     runs-on: ubuntu-latest
+    permissions: read-all
     steps:
       - name: Checkout repository
         uses: actions/checkout@v2
@@ -34,6 +35,7 @@ jobs:
     name: OpenAPI - BASE
     if: ${{ github.base_ref != '' }}
     runs-on: ubuntu-latest
+    permissions: read-all
     steps:
       - name: Checkout repository
         uses: actions/checkout@v2