ソースを参照

Merge commit 'a58a7cbbd9e0937a5d19b18f5b6bf3515aa3325b' into feature/kubemodel

Sean Holcomb 3 週間 前
コミット
c1b406d98e
1 ファイル変更5 行追加4 行削除
  1. 5 4
      .github/workflows/vulnerability-scan.yaml

+ 5 - 4
.github/workflows/vulnerability-scan.yaml

@@ -1,9 +1,6 @@
 name: Trivy Vulnerability Scanner
 
-permissions:
-  issues: write
-  contents: read
-  security-events: write
+permissions: {}
 
 on:
   pull_request:
@@ -19,6 +16,10 @@ jobs:
   scan:
     name: Scan for Vulnerabilities
     runs-on: ubuntu-latest
+    permissions:
+      issues: write
+      contents: read
+      security-events: write
     steps:
       - name: Checkout code
         uses: actions/checkout@v6.0.2