From 361eacb9979d68d379aab6ab392cb74f2b6ffc7a Mon Sep 17 00:00:00 2001 From: s3rj1k Date: Mon, 1 Apr 2024 19:09:28 +0200 Subject: [PATCH] Set `permissions.contents=read` for Build stage. --- .github/workflows/cicd-docker-build-and-distribute.yml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.github/workflows/cicd-docker-build-and-distribute.yml b/.github/workflows/cicd-docker-build-and-distribute.yml index 48b2c9d6..e5c89ca9 100644 --- a/.github/workflows/cicd-docker-build-and-distribute.yml +++ b/.github/workflows/cicd-docker-build-and-distribute.yml @@ -102,7 +102,8 @@ on: jobs: build: runs-on: ${{ inputs.RUNNER }} - permissions: {} + permissions: + contents: read environment: ${{ inputs.ENVIRONMENT }} steps: