mirror of
https://github.com/johndoe6345789/tla_visualiser.git
synced 2026-04-24 13:45:03 +00:00
Add workflow permissions for security
- Add explicit permissions block to restrict GITHUB_TOKEN - Set contents: read permission (minimum required) - Addresses CodeQL security alert Co-authored-by: johndoe6345789 <224850594+johndoe6345789@users.noreply.github.com>
This commit is contained in:
4
.github/workflows/build.yml
vendored
4
.github/workflows/build.yml
vendored
@@ -18,6 +18,10 @@ on:
|
||||
default: 'linux,macos,windows'
|
||||
type: string
|
||||
|
||||
# Restrict GITHUB_TOKEN permissions for security
|
||||
permissions:
|
||||
contents: read
|
||||
|
||||
jobs:
|
||||
# Pre-build checks - fast failure for common issues
|
||||
lint:
|
||||
|
||||
Reference in New Issue
Block a user