Restrict CI workflow permissions to readonly contents

This commit is contained in:
Michael Bull 2024-03-02 17:56:43 +00:00
parent 13dfdae6ab
commit d3d0381d2c
1 changed files with 8 additions and 5 deletions

View File

@ -1,11 +1,14 @@
name: ci name: ci
on: on:
push: push:
branches: [ "master" ] branches: [ "master" ]
pull_request: pull_request:
branches: [ "master" ] branches: [ "master" ]
workflow_call: workflow_call:
permissions:
contents: read
jobs: jobs:
build: build: