Set GITHUB_TOKEN permissions to read only in OpenAPI workflow
This commit is contained in:
parent
2491dd513c
commit
07b9ba2bb4
2
.github/workflows/openapi.yml
vendored
2
.github/workflows/openapi.yml
vendored
|
@ -9,6 +9,7 @@ jobs:
|
||||||
openapi-head:
|
openapi-head:
|
||||||
name: OpenAPI - HEAD
|
name: OpenAPI - HEAD
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
|
permissions: read-all
|
||||||
steps:
|
steps:
|
||||||
- name: Checkout repository
|
- name: Checkout repository
|
||||||
uses: actions/checkout@v2
|
uses: actions/checkout@v2
|
||||||
|
@ -34,6 +35,7 @@ jobs:
|
||||||
name: OpenAPI - BASE
|
name: OpenAPI - BASE
|
||||||
if: ${{ github.base_ref != '' }}
|
if: ${{ github.base_ref != '' }}
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
|
permissions: read-all
|
||||||
steps:
|
steps:
|
||||||
- name: Checkout repository
|
- name: Checkout repository
|
||||||
uses: actions/checkout@v2
|
uses: actions/checkout@v2
|
||||||
|
|
Loading…
Reference in New Issue
Block a user