Limit permissions of govulncheck workflow

This commit is contained in:
Andy Feller 2025-07-21 08:44:58 -04:00
parent bd6b862b63
commit 4da24b8a0c
2 changed files with 3 additions and 2 deletions

View file

@ -5,6 +5,9 @@ on:
jobs:
govulncheck:
runs-on: ubuntu-latest
permissions:
contents: read
security-events: write
steps:
- name: Check out code
uses: actions/checkout@v4

View file

@ -16,10 +16,8 @@ on:
- go.sum
- ".github/licenses.tmpl"
- "script/licenses*"
permissions:
contents: read
jobs:
lint:
runs-on: ubuntu-latest