From acc757f1fa86e6d3ac8b1f1f22fcf626ad6648eb Mon Sep 17 00:00:00 2001 From: Adnan Khan Date: Tue, 21 Oct 2025 13:47:40 -0400 Subject: [PATCH 1/2] ci: scope down permissions for page.yml --- .github/workflows/page.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/page.yml b/.github/workflows/page.yml index bbf32ac3..e42e69e9 100644 --- a/.github/workflows/page.yml +++ b/.github/workflows/page.yml @@ -5,6 +5,10 @@ on: branches: - master +permissions: + contents: write + pages: write + jobs: build: runs-on: ubuntu-latest From 3eb4c4fc1f6ab1d4f4d463a6ee9e22f69e419f82 Mon Sep 17 00:00:00 2001 From: Adnan Khan Date: Tue, 21 Oct 2025 13:47:42 -0400 Subject: [PATCH 2/2] ci: scope down permissions for main.yml --- .github/workflows/main.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 89a49ecf..295fe697 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -9,6 +9,9 @@ on: branches: - master +permissions: + contents: read + jobs: build: runs-on: ubuntu-latest