Skip to content

build: apply least privilege to workflows - #367

Merged
Andris28 merged 2 commits into
mainfrom
fa/apply-least-privilege-to-workflow
Oct 8, 2026
Merged

Andris28 merged 2 commits into
mainfrom
fa/apply-least-privilege-to-workflow

Conversation

@Andris28

@Andris28 Andris28 commented Oct 7, 2026

Copy link
Copy Markdown
Contributor

PR summary

In this commit we add least privilege principle the workflow permissions.

ref.: #366

PR Checklist

Please make sure that your PR fulfills the following requirements:

  • The commit message follows the Angular Commit Message Guidelines.
  • Tests for the changes have been added (for bug fixes / features)
  • Docs have been added / updated (for bug fixes / features)
  • If integration tests or examples were added or modified, a clean test run has been executed and the output is included below (see Integration / examples test evidence)

Current vs new behavior

Does this PR introduce a breaking change?

  • Yes
  • No

Integration / examples test evidence

Other information

Signed-off-by: András Felleg <afelleg@gmail.com>
@Andris28
Andris28 requested review from diatrcz and pyrooka October 7, 2026 14:34

@pyrooka pyrooka left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Please add a top level permissions: {} to make sure nothing is granted by default. Besides this small suggestion the PR looks great, so I approve it now to avoid the re-review.

Signed-off-by: András Felleg <afelleg@gmail.com>
@Andris28
Andris28 merged commit 69007de into main Oct 8, 2026
17 checks passed
@Andris28
Andris28 deleted the fa/apply-least-privilege-to-workflow branch October 8, 2026 09:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants