Skip to content

Conversation

VeithMetro
Copy link
Contributor

This is a fix for this code scanning alert

@Copilot Copilot AI review requested due to automatic review settings October 21, 2025 12:07
Copy link

@Copilot Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR addresses a security code scanning alert by adding explicit permission restrictions to GitHub Actions workflows. The changes implement the principle of least privilege by limiting workflow permissions to read-only access to repository contents.

Key Changes:

  • Added explicit permissions: contents: read to all workflow files
  • Standardizes security posture across MacOS, Linux, and Windows build workflows

Reviewed Changes

Copilot reviewed 5 out of 5 changed files in this pull request and generated no comments.

Show a summary per file
File Description
.github/workflows/MacOS build template.yml Added read-only contents permission to MacOS build template
.github/workflows/Linux build template.yml Added read-only contents permission to Linux build template
.github/workflows/Build ThunderNanoServicesRDK on Windows.yml Added read-only contents permission to Windows build workflow
.github/workflows/Build ThunderNanoServicesRDK on MacOS.yml Added read-only contents permission to MacOS build workflow
.github/workflows/Build ThunderNanoServicesRDK on Linux.yml Added read-only contents permission to Linux build workflow

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.

@VeithMetro VeithMetro merged commit 8d020a7 into master Oct 22, 2025
40 checks passed
@VeithMetro VeithMetro deleted the developmen/actions-premissions branch October 22, 2025 06:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

1 participant