From 5d1d889b302ddeb921cba8689abf52729f0b3d98 Mon Sep 17 00:00:00 2001 From: Arpit Jain Date: Thu, 28 May 2026 11:01:56 +0900 Subject: [PATCH] ci: restrict token permissions on build-and-test workflow Signed-off-by: Arpit Jain --- .github/workflows/build-and-test.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/build-and-test.yml b/.github/workflows/build-and-test.yml index b040689..7c323bf 100644 --- a/.github/workflows/build-and-test.yml +++ b/.github/workflows/build-and-test.yml @@ -15,6 +15,9 @@ on: release: types: [published, edited] +permissions: + contents: read + jobs: build: runs-on: ubuntu-latest