From 891452304f5a310e28ce9a1447b1f26663642783 Mon Sep 17 00:00:00 2001 From: Naji Obeid Date: Mon, 20 Jan 2025 20:10:12 +0000 Subject: [PATCH] fix new zizmor findings --- .github/workflows/codeql-analysis.yml | 2 ++ .github/workflows/hugo.yml | 2 ++ .github/workflows/lint.yml | 2 ++ .github/workflows/prettier.yml | 2 ++ .github/workflows/zizmor.yml | 2 ++ 5 files changed, 10 insertions(+) diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index 0e0cec0aa..4df9eb989 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -8,6 +8,8 @@ on: schedule: - cron: '0 17 * * 2' +permissions: {} + jobs: CodeQL-Build: diff --git a/.github/workflows/hugo.yml b/.github/workflows/hugo.yml index 9b29737f1..34f640582 100644 --- a/.github/workflows/hugo.yml +++ b/.github/workflows/hugo.yml @@ -4,6 +4,8 @@ on: push: pull_request: +permissions: {} + jobs: build: runs-on: ubuntu-latest diff --git a/.github/workflows/lint.yml b/.github/workflows/lint.yml index 96bc0d334..fc384250f 100644 --- a/.github/workflows/lint.yml +++ b/.github/workflows/lint.yml @@ -4,6 +4,8 @@ on: push: pull_request: +permissions: {} + jobs: cache-keys: name: Setup – Cache keys diff --git a/.github/workflows/prettier.yml b/.github/workflows/prettier.yml index b1dd9b1be..9e18f0ed5 100644 --- a/.github/workflows/prettier.yml +++ b/.github/workflows/prettier.yml @@ -4,6 +4,8 @@ on: push: pull_request: +permissions: {} + jobs: prettier: runs-on: ubuntu-latest diff --git a/.github/workflows/zizmor.yml b/.github/workflows/zizmor.yml index c09cf1202..7ca9cb2b3 100644 --- a/.github/workflows/zizmor.yml +++ b/.github/workflows/zizmor.yml @@ -6,6 +6,8 @@ on: pull_request: branches: ["**"] +permissions: {} + jobs: zizmor: name: zizmor latest via PyPI