Skip to content

Commit 947dfa0

Browse files
committed
CI: Restrict default permissions
Reduces risk of arbitrary code is run by attacker.
1 parent c260e6d commit 947dfa0

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

.github/workflows/pytest.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,7 @@
11

22
name: Validate Python Code
3+
permissions:
4+
contents: read
35

46
on:
57
push:

0 commit comments

Comments
 (0)