From 8b2413dfed039233d0ef0f0efe72ee687e00b198 Mon Sep 17 00:00:00 2001 From: Nick Alteen Date: Mon, 27 Nov 2023 23:52:38 -0500 Subject: [PATCH] Update permissions scope --- .github/workflows/ci.yml | 7 ++++--- .github/workflows/linter.yml | 17 +++++++---------- 2 files changed, 11 insertions(+), 13 deletions(-) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index f5e03a6..086d520 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -2,11 +2,12 @@ name: Continuous Integration on: pull_request: + push: branches: - main - push: - branches-ignore: - - main + +permissions: + contents: read jobs: test-docker: diff --git a/.github/workflows/linter.yml b/.github/workflows/linter.yml index 6a46ad7..c8e41dd 100644 --- a/.github/workflows/linter.yml +++ b/.github/workflows/linter.yml @@ -1,31 +1,28 @@ -name: Lint Code Base +name: Lint Codebase on: pull_request: - branches: - - main push: branches: - main +permissions: + contents: read + jobs: lint: - name: Lint Code Base + name: Lint Codebase runs-on: ubuntu-latest - permissions: - contents: read - packages: read - statuses: write - steps: - name: Checkout id: checkout uses: actions/checkout@v4 - - name: Lint Code Base + - name: Lint Codebase id: super-linter uses: super-linter/super-linter/slim@v5 env: DEFAULT_BRANCH: main GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} + VALIDATE_ALL_CODEBASE: true