From c9353befa93ffa3a881d6596ac6f081365e949c8 Mon Sep 17 00:00:00 2001 From: jmeridth Date: Wed, 28 May 2025 17:32:52 -0500 Subject: [PATCH] fix: add permissions to actions workflows where missing Fixing security warnings Signed-off-by: jmeridth --- .github/workflows/build.yml | 3 +++ .github/workflows/docker-build.yml | 4 ++++ .github/workflows/lint.yml | 3 +++ .github/workflows/tests.yml | 3 +++ 4 files changed, 13 insertions(+) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index f57554a..576ac42 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -7,6 +7,9 @@ on: workflow_dispatch: pull_request: +permissions: + contents: read + jobs: build: runs-on: ubuntu-latest diff --git a/.github/workflows/docker-build.yml b/.github/workflows/docker-build.yml index 46b5cc7..ce70971 100644 --- a/.github/workflows/docker-build.yml +++ b/.github/workflows/docker-build.yml @@ -7,6 +7,10 @@ on: workflow_dispatch: pull_request: +permissions: + contents: read + packages: write + jobs: docker-build: runs-on: ubuntu-latest diff --git a/.github/workflows/lint.yml b/.github/workflows/lint.yml index 5a23b6b..9ca2b54 100644 --- a/.github/workflows/lint.yml +++ b/.github/workflows/lint.yml @@ -7,6 +7,9 @@ on: workflow_dispatch: pull_request: +permissions: + contents: read + jobs: lint: runs-on: ubuntu-latest diff --git a/.github/workflows/tests.yml b/.github/workflows/tests.yml index 190beb6..4e5e025 100644 --- a/.github/workflows/tests.yml +++ b/.github/workflows/tests.yml @@ -7,6 +7,9 @@ on: workflow_dispatch: pull_request: +permissions: + contents: read + jobs: test: runs-on: ubuntu-latest