Skip to content

Harden GitHub workflows to least-privilege read-only permissions#264

Merged
boyan-velinov merged 1 commit into
masterfrom
github-workflows
Jun 2, 2026
Merged

Harden GitHub workflows to least-privilege read-only permissions#264
boyan-velinov merged 1 commit into
masterfrom
github-workflows

Conversation

@boyan-velinov

Copy link
Copy Markdown
Contributor

No description provided.

vkalapov
vkalapov previously approved these changes May 28, 2026
…pinned action hashes

- Add explicit least-privilege read-only permissions to all workflows
- Pin all action references to immutable commit SHAs (v4) instead of mutable tags
@boyan-velinov boyan-velinov merged commit 6b99ff6 into master Jun 2, 2026
5 of 7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants