Skip to content

Commit 6783e89

Browse files
committed
ci: fix perms errors
1 parent 17f63d8 commit 6783e89

File tree

3 files changed

+18
-0
lines changed

3 files changed

+18
-0
lines changed

.github/workflows/main-ci.yml

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -13,4 +13,10 @@ jobs:
1313
ci:
1414
name: Continuous Integration
1515
uses: ./.github/workflows/__shared-ci.yml
16+
permissions:
17+
contents: read
18+
id-token: write
19+
issues: read
20+
packages: write
21+
pull-requests: read
1622
secrets: inherit

.github/workflows/pull-request-ci.yml

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,4 +23,10 @@ jobs:
2323
ci:
2424
name: Continuous Integration
2525
uses: ./.github/workflows/__shared-ci.yml
26+
permissions:
27+
contents: read
28+
id-token: write
29+
issues: read
30+
packages: write
31+
pull-requests: read
2632
secrets: inherit

.github/workflows/release.yml

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,6 +23,12 @@ jobs:
2323
needs: check-branches
2424
name: Continuous Integration
2525
uses: ./.github/workflows/__shared-ci.yml
26+
permissions:
27+
contents: read
28+
id-token: write
29+
issues: read
30+
packages: write
31+
pull-requests: read
2632

2733
update_release_draft:
2834
# we want to publish a new tag only if ci succeeds

0 commit comments

Comments
 (0)