From 2fbcbc0eaf1722a9d77c838581cc38ec8cce5614 Mon Sep 17 00:00:00 2001 From: Joas Schilling Date: Tue, 27 Jan 2026 14:56:50 +0100 Subject: [PATCH] ci(action): Assign permission as low as possible Signed-off-by: Joas Schilling --- .github/workflows/static-code-analysis.yml | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/.github/workflows/static-code-analysis.yml b/.github/workflows/static-code-analysis.yml index 8b020442292..ee2eaff5ded 100644 --- a/.github/workflows/static-code-analysis.yml +++ b/.github/workflows/static-code-analysis.yml @@ -15,7 +15,6 @@ on: permissions: contents: read - security-events: write concurrency: group: static-code-analysis-${{ github.head_ref || github.run_id }} @@ -59,6 +58,9 @@ jobs: if: ${{ github.repository_owner != 'nextcloud-gmbh' }} + permissions: + security-events: write + steps: - name: Checkout code uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8