From f5f6f92f9b20cdac18791933112311931077f65e Mon Sep 17 00:00:00 2001 From: Ulises Gascon Date: Mon, 20 Nov 2023 13:43:50 +0100 Subject: [PATCH] feat: limit workflow permissions to read only --- .github/workflows/build.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 031f8f551..b581aaf91 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -1,5 +1,9 @@ name: Build on: [push, pull_request] + +permissions: + contents: read + jobs: build: name: Build