Skip to content

Commit 6908a61

Browse files
committed
fix(linter)!: fix linter required permissions
Signed-off-by: Emilien Escalle <emilien.escalle@escemi.com>
1 parent 0381055 commit 6908a61

4 files changed

Lines changed: 11 additions & 3 deletions

File tree

.github/workflows/__main-ci.yml

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -24,10 +24,11 @@ jobs:
2424
actions: read
2525
contents: read
2626
id-token: write
27+
issues: write
2728
packages: read
2829
pull-requests: write
29-
statuses: write
3030
security-events: write
31+
statuses: write
3132

3233
release:
3334
needs: ci

.github/workflows/__pull-request-ci.yml

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,8 @@ jobs:
1818
actions: read
1919
contents: read
2020
id-token: write
21+
issues: write
2122
packages: read
2223
pull-requests: write
23-
statuses: write
2424
security-events: write
25+
statuses: write

.github/workflows/__shared-ci.yml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -10,6 +10,9 @@ jobs:
1010
permissions:
1111
actions: read
1212
contents: read
13+
issues: write
14+
packages: read
15+
pull-requests: write
1316
security-events: write
1417
statuses: write
1518
uses: ./.github/workflows/linter.yml

.github/workflows/linter.yml

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -76,6 +76,9 @@ jobs:
7676
runs-on: ${{ fromJson(inputs.runs-on) }}
7777
permissions:
7878
contents: read
79+
issues: write
80+
packages: read
81+
pull-requests: write
7982
statuses: write
8083
steps:
8184
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
@@ -246,7 +249,7 @@ jobs:
246249
VALIDATE_ALL_CODEBASE: ${{ inputs.lint-all }}
247250
LOG_LEVEL: WARN
248251
DEFAULT_BRANCH: ${{ github.event.repository.default_branch }}
249-
GITHUB_TOKEN: ${{ secrets.github-token || github.token }} # zizmor: ignore[secrets-outside-env] reusable workflow token override is intentional
252+
GITHUB_TOKEN: ${{ secrets.github-token || secrets.GITHUB_TOKEN || github.token }} # zizmor: ignore[secrets-outside-env] reusable workflow token override is intentional
250253
IGNORE_GITIGNORED_FILES: "true"
251254

252255
codeql:

0 commit comments

Comments
 (0)