Skip to content

Harden GitHub workflows to least-privilege read-only permissions#264

Open
boyan-velinov wants to merge 1 commit into
masterfrom
github-workflows
Open

Harden GitHub workflows to least-privilege read-only permissions#264
boyan-velinov wants to merge 1 commit into
masterfrom
github-workflows

Conversation

@boyan-velinov
Copy link
Copy Markdown
Contributor

No description provided.

vkalapov
vkalapov previously approved these changes May 28, 2026
…pinned action hashes

- Add explicit least-privilege read-only permissions to all workflows
- Pin all action references to immutable commit SHAs (v4) instead of mutable tags
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants