From 0ce5bed20ddb4d86b9ad55897f8a424d227eca34 Mon Sep 17 00:00:00 2001 From: Adnan Khan Date: Mon, 20 Oct 2025 22:22:47 -0400 Subject: [PATCH 1/2] Scope down GitHub token permissions for main.yml --- .github/workflows/main.yml | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index a2887f1..72f07b9 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -5,6 +5,11 @@ on: - cron: "0 */24 * * *" workflow_dispatch: + +permissions: + contents: write + gists: write + jobs: build: runs-on: ubuntu-latest From 00603e406ca22d9371b53fbc5adc94ca8278c316 Mon Sep 17 00:00:00 2001 From: Adnan Khan Date: Tue, 21 Oct 2025 10:55:41 -0400 Subject: [PATCH 2/2] Remove gists write permission from main.yml Removed gists write permission from workflow. --- .github/workflows/main.yml | 1 - 1 file changed, 1 deletion(-) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 72f07b9..bb4b546 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -8,7 +8,6 @@ on: permissions: contents: write - gists: write jobs: build: