Skip to content

Restrict GitHub Actions token permissions to contents: read [DEV-225]#3

Merged
davidrunger merged 1 commit intomainfrom
restrict-github-actions-permissions-to-contents-read
Mar 26, 2025
Merged

Restrict GitHub Actions token permissions to contents: read [DEV-225]#3
davidrunger merged 1 commit intomainfrom
restrict-github-actions-permissions-to-contents-read

Conversation

@davidrunger
Copy link
Owner

https://docs.github.com/en/actions/writing-workflows/choosing-what-your-workflow-does/controlling-permissions-for-github_token

This should limit the surface area for attacks in the event of some sort of compromise.

@davidrunger davidrunger merged commit edb33d7 into main Mar 26, 2025
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant