Skip to content

Commit 6ad6cb3

Browse files
authored
chore: Replace pull_request_target with pull_request in PR title validation (#871)
Replace `pull_request_target` with `pull_request` to reduce attack surface. The semantic PR title action only reads the event payload, so elevated permissions are not needed.
1 parent 4d3cace commit 6ad6cb3

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

.github/workflows/pr_title.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
name: "Validate PR title"
33

44
on:
5-
pull_request_target:
5+
pull_request:
66
types:
77
- opened
88
- edited

0 commit comments

Comments
 (0)