From dfb85fdc512526ad4c4513849a3839cb344af369 Mon Sep 17 00:00:00 2001 From: "Jason M. Gates" Date: Wed, 3 Jul 2024 19:25:26 -0600 Subject: [PATCH] ci: Restrict token permissions https://github.com/sandialabs/reverse_argparse/security/code-scanning/21 --- .github/workflows/continuous-integration.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/continuous-integration.yml b/.github/workflows/continuous-integration.yml index 81c4b63..4238a63 100644 --- a/.github/workflows/continuous-integration.yml +++ b/.github/workflows/continuous-integration.yml @@ -11,6 +11,9 @@ defaults: run: shell: bash +permissions: + contents: read + jobs: test: runs-on: ubuntu-latest