Skip to content

Commit d7d29f1

Browse files
authored
Resolve insufficient permissions for audit check run creation (#55)
Scope checks:write permission to the audit job so rustsec/audit-check can create GitHub Check Runs without elevating workflow-level permissions.
1 parent cf66945 commit d7d29f1

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

.github/workflows/ci.yml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -107,6 +107,9 @@ jobs:
107107
name: Security audit
108108
runs-on: ubuntu-latest
109109
timeout-minutes: 15
110+
permissions:
111+
contents: read
112+
checks: write
110113
steps:
111114
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6
112115
- uses: rustsec/audit-check@69366f33c96575abad1ee0dba8212993eecbe998 # v2

0 commit comments

Comments
 (0)