ci: Further restrict GITHUB_TOKEN permissions

This commit is contained in:
Daniel Jacobs 2024-08-23 12:04:29 -04:00
parent d875015e12
commit d17b29c165
1 changed files with 4 additions and 11 deletions

View File

@ -310,20 +310,13 @@ jobs:
if: needs.create-nightly-release.outputs.is_active == 'true'
runs-on: ubuntu-22.04
permissions:
actions: write
actions: read
attestations: write
checks: write
contents: write
deployments: write
discussions: write
checks: read
contents: read
id-token: write
issues: write
metadata: read
packages: write
pages: write
pull-requests: write
repository-projects: write
security-events: write
pull-requests: read
statuses: write
strategy:
matrix: