Skip to content

Add security-events: write to main workflows, granular permissions#6412

Open
evankanderson wants to merge 1 commit intomindersec:mainfrom
evankanderson:fix-ci
Open

Add security-events: write to main workflows, granular permissions#6412
evankanderson wants to merge 1 commit intomindersec:mainfrom
evankanderson:fix-ci

Conversation

@evankanderson
Copy link
Copy Markdown
Member

Summary

#6406 adjusted security.yml to grant security-events: write, but missed adding these to main.yml for post-merge CI runs. It also granted the access over-broadly, so reduce the permissions scopes in the CI as well.

Testing

Adjusting the PR workflow to follow the same pattern allows checking that the settings in main.yml are likely to work.

@evankanderson evankanderson requested a review from a team as a code owner April 23, 2026 16:35
@coveralls
Copy link
Copy Markdown

Coverage Status

Coverage is 60.356%evankanderson:fix-ci into mindersec:main. No base build found for mindersec:main.

@evankanderson
Copy link
Copy Markdown
Member Author

(I think Ozz may be out, and this is actually breaking the post-submit workflow)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants