Skip to content

Commit 281b0cd

Browse files
dependabot[bot]neilime
authored andcommitted
build(deps): bump the github-actions-dependencies group with 2 updates
Bumps the github-actions-dependencies group with 2 updates: - [hoverkraft-tech/ci-github-nodejs](https://github.com/hoverkraft-tech/ci-github-nodejs) --- updated-dependencies: - dependency-name: hoverkraft-tech/ci-github-nodejs dependency-version: 0.18.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependencies - dependency-name: hoverkraft-tech/ci-github-nodejs/.github/workflows/continuous-integration.yml dependency-version: 0.18.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: github-actions-dependencies ... Signed-off-by: dependabot[bot] <support@github.com> Signed-off-by: Emilien Escalle <emilien.escalle@escemi.com>
1 parent 6485bfe commit 281b0cd

5 files changed

Lines changed: 45 additions & 27 deletions

File tree

.github/workflows/__check-dist.yml

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -3,16 +3,17 @@ name: Internal - Checks for dist
33
on:
44
workflow_call:
55

6-
permissions:
7-
contents: read
6+
permissions: {}
87

98
jobs:
109
check-dist:
1110
name: Check dist
1211
runs-on: ubuntu-latest
12+
permissions:
13+
contents: read
1314
steps:
1415
- uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
15-
- uses: hoverkraft-tech/ci-github-nodejs/actions/setup-node@23af54bc615d657aa9c13c472ae701445c1811a6 # 0.17.1
16+
- uses: hoverkraft-tech/ci-github-nodejs/actions/setup-node@32a69b7b8fd5f7ab7bf656e7e88aa90ad235cf8d # 0.18.0
1617

1718
- name: Build dist/ Directory
1819
id: package

.github/workflows/__check-nodejs.yml

Lines changed: 5 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -10,10 +10,12 @@ permissions:
1010

1111
jobs:
1212
test-nodejs:
13-
uses: hoverkraft-tech/ci-github-nodejs/.github/workflows/continuous-integration.yml@23af54bc615d657aa9c13c472ae701445c1811a6 # 0.17.1
13+
uses: hoverkraft-tech/ci-github-nodejs/.github/workflows/continuous-integration.yml@32a69b7b8fd5f7ab7bf656e7e88aa90ad235cf8d # 0.18.0
1414
permissions:
15+
contents: read
1516
id-token: write
17+
pull-requests: write
1618
security-events: write
17-
contents: read
1819
with:
19-
build: ""
20+
test: |
21+
{"coverage":"codecov"}

.github/workflows/__shared-ci.yml

Lines changed: 16 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -3,17 +3,16 @@ name: Common Continuous Integration tasks
33
on:
44
workflow_call:
55

6-
permissions:
7-
actions: read
8-
contents: read
9-
issues: write
10-
statuses: write
11-
security-events: write
12-
id-token: write
6+
permissions: {}
137

148
jobs:
159
linter:
1610
uses: hoverkraft-tech/ci-github-common/.github/workflows/linter.yml@753288393de1f3d92f687a6761d236ca800f5306 # 0.28.1
11+
permissions:
12+
actions: read
13+
contents: read
14+
security-events: write
15+
statuses: write
1716
with:
1817
# FIXME: remove VALIDATE_*_PRETTIER and *_SUMMARY when supported (https://github.com/super-linter/super-linter/issues/6089)
1918
linter-env: |
@@ -30,14 +29,24 @@ jobs:
3029
name: Test nodejs
3130
needs: linter
3231
uses: ./.github/workflows/__check-nodejs.yml
32+
permissions:
33+
contents: read
34+
id-token: write
35+
pull-requests: write
36+
security-events: write
3337
secrets: inherit
3438

3539
check-dist:
3640
name: Test nodejs
3741
needs: linter
3842
uses: ./.github/workflows/__check-dist.yml
43+
permissions:
44+
contents: read
3945

4046
check-action:
4147
name: Test action
4248
needs: [check-nodejs, check-dist]
4349
uses: ./.github/workflows/__check-action.yml
50+
permissions:
51+
contents: read
52+
issues: write

.github/workflows/main-ci.yml

Lines changed: 11 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -5,13 +5,7 @@ on:
55
branches: [main]
66
tags: ["*"]
77

8-
permissions:
9-
actions: read
10-
contents: read
11-
issues: write
12-
statuses: write
13-
security-events: write
14-
id-token: write
8+
permissions: {}
159

1610
concurrency:
1711
group: ${{ github.workflow }}-${{ github.ref }}
@@ -20,11 +14,21 @@ concurrency:
2014
jobs:
2115
ci:
2216
uses: ./.github/workflows/__shared-ci.yml
17+
permissions:
18+
actions: read
19+
contents: read
20+
id-token: write
21+
issues: write
22+
pull-requests: write
23+
security-events: write
24+
statuses: write
2325
secrets: inherit
2426

2527
generate-readme:
2628
needs: ci
2729
runs-on: ubuntu-latest
30+
permissions:
31+
contents: read
2832
steps:
2933
- uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
3034
- uses: hoverkraft-tech/ci-dokumentor@c46a1a108957237cf485103a80b060c35c7dba33 # 0.2.2

.github/workflows/pull-request-ci.yml

Lines changed: 9 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -5,13 +5,7 @@ on:
55
pull_request:
66
branches: [main]
77

8-
permissions:
9-
actions: read
10-
contents: read
11-
issues: write
12-
statuses: write
13-
security-events: write
14-
id-token: write
8+
permissions: {}
159

1610
concurrency:
1711
group: ${{ github.workflow }}-${{ github.ref }}
@@ -20,4 +14,12 @@ concurrency:
2014
jobs:
2115
ci:
2216
uses: ./.github/workflows/__shared-ci.yml
17+
permissions:
18+
actions: read
19+
contents: read
20+
id-token: write
21+
issues: write
22+
pull-requests: write
23+
security-events: write
24+
statuses: write
2325
secrets: inherit

0 commit comments

Comments
 (0)