Commit f5acb9d1 authored by nathannaveen's avatar nathannaveen Committed by GitHub

Updated workflow permissions. (#5216)

parent a1429e14
...@@ -8,8 +8,15 @@ on: ...@@ -8,8 +8,15 @@ on:
schedule: schedule:
- cron: '22 10 * * 4' - cron: '22 10 * * 4'
permissions:
contents: read
jobs: jobs:
analyze: analyze:
permissions:
actions: read # for github/codeql-action/init to get workflow details
contents: read # for actions/checkout to fetch code
security-events: write # for github/codeql-action/autobuild to send a status report
name: Analyze name: Analyze
runs-on: ubuntu-latest runs-on: ubuntu-latest
......
...@@ -9,6 +9,9 @@ on: ...@@ -9,6 +9,9 @@ on:
description: "Release (e.g., v1.9.0)" description: "Release (e.g., v1.9.0)"
required: true required: true
permissions:
contents: read
jobs: jobs:
docker-release: docker-release:
runs-on: ubuntu-latest runs-on: ubuntu-latest
......
name: Go Coverage name: Go Coverage
on: [pull_request] on: [pull_request]
permissions:
contents: read
jobs: jobs:
test: test:
name: Coverage name: Coverage
......
name: Go Tests name: Go Tests
on: [push, pull_request] on: [push, pull_request]
permissions:
contents: read
jobs: jobs:
test: test:
name: Test name: Test
......
...@@ -3,8 +3,14 @@ on: ...@@ -3,8 +3,14 @@ on:
schedule: schedule:
- cron: '30 1 * * *' - cron: '30 1 * * *'
permissions:
contents: read
jobs: jobs:
stale: stale:
permissions:
issues: write # for actions/stale to close stale issues
pull-requests: write # for actions/stale to close stale PRs
runs-on: ubuntu-latest runs-on: ubuntu-latest
steps: steps:
- uses: actions/stale@7fb802b3079a276cf3c7e6ba9aa003c665b3f838 - uses: actions/stale@7fb802b3079a276cf3c7e6ba9aa003c665b3f838
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment