mirror of
https://github.com/NixOS/nix
synced 2025-06-29 06:21:14 +02:00
Restrict permissions
This commit is contained in:
parent
53c03a0161
commit
dece94fe25
1 changed files with 6 additions and 3 deletions
9
.github/workflows/ci.yml
vendored
9
.github/workflows/ci.yml
vendored
|
@ -12,9 +12,6 @@ on:
|
|||
permissions:
|
||||
id-token: "write"
|
||||
contents: "read"
|
||||
pull-requests: "write"
|
||||
statuses: "write"
|
||||
deployments: "write"
|
||||
|
||||
jobs:
|
||||
eval:
|
||||
|
@ -142,6 +139,12 @@ jobs:
|
|||
if: github.event_name != 'merge_group'
|
||||
needs: build_x86_64-linux
|
||||
runs-on: blacksmith
|
||||
permissions:
|
||||
id-token: "write"
|
||||
contents: "read"
|
||||
pull-requests: "write"
|
||||
statuses: "write"
|
||||
deployments: "write"
|
||||
steps:
|
||||
- name: Checkout nix
|
||||
uses: actions/checkout@v4
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue