Skip to content

Commit f510db4

Browse files
ci(github): set default permissions to read-all
1 parent e710664 commit f510db4

File tree

7 files changed

+13
-13
lines changed

7 files changed

+13
-13
lines changed

.github/workflows/assign-reviewer.yml

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,12 +1,14 @@
11
name: Assign Reviewer
22
on: pull_request_target
33

4-
permissions:
5-
pull-requests: write
4+
permissions: read-all
65

76
jobs:
87
assign-reviewer:
98
runs-on: ubuntu-latest
9+
permissions:
10+
pull-requests: write
11+
1012
steps:
1113
- name: Assign reviewer
1214
if: >

.github/workflows/build.yml

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,7 @@
11
name: build
22
on: [push, pull_request]
33

4-
permissions:
5-
contents: read
4+
permissions: read-all
65

76
jobs:
87
build:

.github/workflows/commitlint.yml

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,7 @@
11
name: commitlint
22
on: [push, pull_request]
33

4-
permissions:
5-
contents: read
4+
permissions: read-all
65

76
jobs:
87
commitlint:

.github/workflows/lint.yml

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,7 @@
11
name: lint
22
on: [push, pull_request]
33

4-
permissions:
5-
contents: read
4+
permissions: read-all
65

76
jobs:
87
lint:

.github/workflows/release-please.yml

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,6 +4,8 @@ on:
44
branches:
55
- master
66

7+
permissions: read-all
8+
79
jobs:
810
release-please:
911
runs-on: ubuntu-latest
@@ -25,7 +27,6 @@ jobs:
2527
needs: release-please
2628
if: ${{ needs.release-please.outputs.release_created }}
2729
permissions:
28-
contents: read
2930
id-token: write
3031

3132
steps:

.github/workflows/size-limit.yml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,14 +4,15 @@ on:
44
branches:
55
- master
66

7-
permissions:
8-
pull-requests: write
7+
permissions: read-all
98

109
jobs:
1110
size:
1211
runs-on: ubuntu-latest
1312
env:
1413
CI_JOB_NUMBER: 1
14+
permissions:
15+
pull-requests: write
1516

1617
steps:
1718
- name: Checkout repository

.github/workflows/test.yml

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,7 @@
11
name: test
22
on: [push, pull_request]
33

4-
permissions:
5-
contents: read
4+
permissions: read-all
65

76
jobs:
87
unit:

0 commit comments

Comments
 (0)