From d25089f901b2a1fef2aff8ff2a3c71ea6fe1b4ec Mon Sep 17 00:00:00 2001 From: Nuno Simoes Date: Fri, 6 Feb 2026 20:06:23 +0100 Subject: [PATCH] workflows: adjust token permissions https://github.com/mattermost/mattermost-plugin-boards/security/code-scanning/7 https://github.com/mattermost/mattermost-plugin-boards/security/code-scanning/8 --- .github/workflows/ci.yml | 3 +++ .github/workflows/lint-server.yml | 3 +++ 2 files changed, 6 insertions(+) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 1e41c4052..83369871c 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -12,6 +12,9 @@ env: BRANCH_NAME: ${{ github.head_ref || github.ref_name }} EXCLUDE_ENTERPRISE: true +permissions: + contents: read + jobs: webapp-test: runs-on: ubuntu-22.04 diff --git a/.github/workflows/lint-server.yml b/.github/workflows/lint-server.yml index e0019ea52..349ed6c29 100644 --- a/.github/workflows/lint-server.yml +++ b/.github/workflows/lint-server.yml @@ -7,6 +7,9 @@ on: branches: [ main, release-** ] workflow_dispatch: +permissions: + contents: read + env: BRANCH_NAME: ${{ github.head_ref || github.ref_name }} EXCLUDE_ENTERPRISE: true