From f35493d14e7f36d4e48bb2ee7dc75927b4297068 Mon Sep 17 00:00:00 2001 From: Sebastian Serth Date: Mon, 13 Mar 2023 16:19:08 +0100 Subject: [PATCH] Fix permissions for Trivy GitHub workflow --- .github/workflows/ci.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index df47546..065171b 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -100,6 +100,10 @@ jobs: dep-scan: runs-on: ubuntu-latest + permissions: + actions: read + contents: read + security-events: write needs: [ compile ] if: github.event_name != 'push' || github.actor != 'dependabot[bot]' && github.actor != 'dependabot-preview[bot]' && github.actor != 'dependabot' steps: