From 1ec7e4558a74d10d59b611ba6f4dd69586859f15 Mon Sep 17 00:00:00 2001 From: Cindy Hill <110551331+cinderellasecure@users.noreply.github.com> Date: Wed, 29 Oct 2025 13:26:36 -0600 Subject: [PATCH 1/2] Potential fix for code scanning alert no. 6: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .github/workflows/main.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 93a4352f..b0dc9d87 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -1,4 +1,6 @@ name: CI tests +permissions: + contents: read on: push: branches: From d6492c5264a15ac31db66c021a1511088869e436 Mon Sep 17 00:00:00 2001 From: Cindy Hill <110551331+cinderellasecure@users.noreply.github.com> Date: Wed, 29 Oct 2025 13:26:37 -0600 Subject: [PATCH 2/2] Potential fix for code scanning alert no. 2: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .github/workflows/rubocop.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/rubocop.yml b/.github/workflows/rubocop.yml index 6204642c..c5a450de 100644 --- a/.github/workflows/rubocop.yml +++ b/.github/workflows/rubocop.yml @@ -3,6 +3,8 @@ on: pull_request: branches: - main +permissions: + contents: read jobs: build: runs-on: ubuntu-latest