From 5304924fbcb032540de11b9fb3e38b1ace6d1d2b Mon Sep 17 00:00:00 2001 From: mmsqe Date: Wed, 24 Jul 2024 09:56:21 +0800 Subject: [PATCH] Problem: minor security issue in build-rocksdb workflow (#1069) --- .github/workflows/build.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 18dd522b0..8568ad1f2 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -137,6 +137,10 @@ jobs: matrix: os: [ubuntu-latest, macos-latest] runs-on: ${{ matrix.os }} + permissions: + actions: read + contents: read + security-events: write steps: - uses: actions/checkout@v3 - uses: cachix/install-nix-action@v23