From f65965950047e928b549a4d39ae545e605d3ced1 Mon Sep 17 00:00:00 2001 From: Faisal Salman Date: Thu, 13 Apr 2023 06:24:11 +0700 Subject: [PATCH] Set CodeQL permission to read-only --- .github/workflows/codeql.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 1db5e98..0f42cb1 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -20,6 +20,8 @@ on: schedule: - cron: '15 6 * * 0' +permissions: read-all + jobs: analyze: name: Analyze