From 4b93ceda06d518d986aeb3cffa6c90f7e95459a8 Mon Sep 17 00:00:00 2001 From: mmsqe Date: Wed, 24 Jul 2024 09:44:21 +0800 Subject: [PATCH] Problem: minor security issue in build-rocksdb workflow --- .github/workflows/build.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 18dd522b0..8568ad1f2 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -137,6 +137,10 @@ jobs: matrix: os: [ubuntu-latest, macos-latest] runs-on: ${{ matrix.os }} + permissions: + actions: read + contents: read + security-events: write steps: - uses: actions/checkout@v3 - uses: cachix/install-nix-action@v23