From 5f691c31718e091ef7c77bb79e1ef7a6561d6ffb Mon Sep 17 00:00:00 2001 From: Ehren Bendler Date: Wed, 30 Apr 2025 10:00:44 -0400 Subject: [PATCH] Potential fix for code scanning alert no. 2: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .github/workflows/build-and-test.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/build-and-test.yml b/.github/workflows/build-and-test.yml index 4430a20..2b0ec6b 100644 --- a/.github/workflows/build-and-test.yml +++ b/.github/workflows/build-and-test.yml @@ -1,5 +1,8 @@ name: Build and test on: [push, pull_request] +permissions: + contents: read + actions: write jobs: build-and-test: