Skip to content

ci: set least-privilege permissions on CI workflows - #10

Merged
mpge merged 1 commit into
masterfrom
ci/workflow-permissions
Jun 2, 2026
Merged

mpge merged 1 commit into
masterfrom
ci/workflow-permissions

Conversation

@mpge

@mpge mpge commented Jun 2, 2026

Copy link
Copy Markdown
Member

Adds an explicit top-level permissions block (contents: read) to the CI workflow(s) in this repo, resolving the CodeQL actions/missing-workflow-permissions alert. The job(s) only check out the repo and run lint/tests, so contents: read is sufficient. Mirrors the fix merged in escalated-laravel (#126). No functional change to CI.

Adds an explicit top-level permissions block (contents: read), resolving the CodeQL actions/missing-workflow-permissions alert. The jobs only check out the repo and run lint/tests, so contents: read is sufficient. Mirrors escalated-laravel.
@mpge
mpge merged commit 0a47a27 into master Jun 2, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant