From 37f55b261aa27de0be992902558231c0d9c2f6f1 Mon Sep 17 00:00:00 2001 From: Jonatan Waern Date: Tue, 17 Dec 2024 09:18:20 +0100 Subject: [PATCH] Restrict workflow permissions to minimum Signed-off-by: Jonatan Waern --- .github/workflows/binaries.yml | 3 +++ .github/workflows/rust.yml | 3 +++ .github/workflows/scans.yml | 3 +++ 3 files changed, 9 insertions(+) diff --git a/.github/workflows/binaries.yml b/.github/workflows/binaries.yml index 28ebe7f..c7b1779 100644 --- a/.github/workflows/binaries.yml +++ b/.github/workflows/binaries.yml @@ -1,5 +1,8 @@ name: Build Binaries +permissions: + actions: write + on: workflow_call: inputs: diff --git a/.github/workflows/rust.yml b/.github/workflows/rust.yml index 1baa29c..38c1b4a 100644 --- a/.github/workflows/rust.yml +++ b/.github/workflows/rust.yml @@ -1,5 +1,8 @@ name: Archive Binary +permissions: + actions: write + on: push: branches: [ "main" ] diff --git a/.github/workflows/scans.yml b/.github/workflows/scans.yml index 4d5f5aa..2cd3fdd 100644 --- a/.github/workflows/scans.yml +++ b/.github/workflows/scans.yml @@ -1,5 +1,8 @@ name: Cargo Check +permissions: + actions: write + on: workflow_call: inputs: