From 1b7d19a0dc51cbbaecf600a00f6fa7a309153249 Mon Sep 17 00:00:00 2001 From: akselthomsen Date: Fri, 20 Dec 2024 12:34:51 +0100 Subject: [PATCH] fix: checkov top-level permission should not be write-all --- .github/workflows/check_and_co.yaml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/check_and_co.yaml b/.github/workflows/check_and_co.yaml index 1fbdfdf..3d0a519 100644 --- a/.github/workflows/check_and_co.yaml +++ b/.github/workflows/check_and_co.yaml @@ -7,6 +7,9 @@ on: branches: - main - master + permissions: + contents: write + pull-requests: write name: All actions jobs: check-current-version: