Browse Source

chore: Set permissions for GitHub actions (#6936)

Naveen 2 years ago
parent
commit
e65071d3aa
2 changed files with 9 additions and 0 deletions
  1. 6 0
      .github/workflows/go.yml
  2. 3 0
      .github/workflows/shell.yml

+ 6 - 0
.github/workflows/go.yml

@@ -18,8 +18,14 @@ on:
 env:
   GOPROXY: "https://proxy.golang.org"
 
+permissions:
+  contents: read
+
 jobs:
   lint:
+    permissions:
+      contents: read  # for actions/checkout to fetch code
+      pull-requests: read  # for golangci/golangci-lint-action to fetch pull requests
     name: Lint
     runs-on: ubuntu-latest
     steps:

+ 3 - 0
.github/workflows/shell.yml

@@ -4,6 +4,9 @@ on:
     branches: [ main ]
   pull_request:
 
+permissions:
+  contents: read
+
 jobs:
   shellcheck:
     name: Shellcheck