Restrict CI workflow permissions to readonly contents

This commit is contained in:
Michael Bull 2024-03-02 17:56:43 +00:00
parent 13dfdae6ab
commit d3d0381d2c
1 changed files with 8 additions and 5 deletions

View File

@ -1,11 +1,14 @@
name: ci
on:
push:
branches: [ "master" ]
pull_request:
branches: [ "master" ]
workflow_call:
push:
branches: [ "master" ]
pull_request:
branches: [ "master" ]
workflow_call:
permissions:
contents: read
jobs:
build: