From 54390b400f151514beb082d1d40bf5e6042612a9 Mon Sep 17 00:00:00 2001 From: Alex Date: Mon, 26 Sep 2022 23:00:51 +0200 Subject: [PATCH] build: harden ufuzz.yml permissions Signed-off-by: Alex --- .github/workflows/ufuzz.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/ufuzz.yml b/.github/workflows/ufuzz.yml index 43b6ed55..37601abf 100644 --- a/.github/workflows/ufuzz.yml +++ b/.github/workflows/ufuzz.yml @@ -11,6 +11,10 @@ on: env: BASE_URL: https://api.github.com/repos/${{ github.repository }} TOKEN: ${{ github.token }} + +permissions: + contents: read # to fetch code (actions/checkout) + jobs: ufuzz: strategy: