From 492f7479e91506779459636a579ebfe462c4d81d Mon Sep 17 00:00:00 2001 From: Alex Date: Thu, 8 Dec 2022 20:13:56 +0200 Subject: [PATCH] build: harden main.yml permissions Signed-off-by: Alex --- .github/workflows/main.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 10bb5ee..5c72652 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -2,6 +2,10 @@ name: CI on: - push - pull_request + +permissions: + contents: read # to fetch code (actions/checkout) + jobs: test: name: Node.js ${{ matrix.node-version }}