Skip to content

Conversation

HastD
Copy link

@HastD HastD commented Oct 3, 2025

As recommended by Zizmor, restrict permissions for the build.yml workflow to read-only access to the repository, and do not persist credentials for the repository checkout action.

Additionally, update actions/checkout to the latest version and pin it by a commit hash, and improve workflow formatting for clarity.

As recommended by Zizmor, restrict permissions for the build.yml
workflow to read-only access to the repository, and do not persist
credentials for the repository checkout action.

Additionally, update `actions/checkout` to the latest version and pin it
by a commit hash, and improve workflow formatting for clarity.

Signed-off-by: Daniel Hast <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant