From 59d301795fcebbbfbf859e0d4e2481f008a4b83e Mon Sep 17 00:00:00 2001 From: Will Deng Date: Thu, 18 Dec 2025 16:43:35 -0500 Subject: [PATCH 1/2] add permissioning to action --- .github/workflows/create-release-pr.yaml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/create-release-pr.yaml b/.github/workflows/create-release-pr.yaml index 02e5423..c2d45ea 100644 --- a/.github/workflows/create-release-pr.yaml +++ b/.github/workflows/create-release-pr.yaml @@ -14,6 +14,9 @@ on: jobs: create-release-pr: runs-on: ubuntu-latest + permissions: + contents: write + pull-requests: write steps: - uses: actions/checkout@08eba0b27e820071cde6df949e0beb9ba4906955 # actions/checkout@v4 From ec260b5c5f1be7c20abedab5ac3701fb3b362ae0 Mon Sep 17 00:00:00 2001 From: Will Deng Date: Thu, 18 Dec 2025 16:47:34 -0500 Subject: [PATCH 2/2] Changelog --- .changes/unreleased/Security-20251218-164725.yaml | 3 +++ 1 file changed, 3 insertions(+) create mode 100644 .changes/unreleased/Security-20251218-164725.yaml diff --git a/.changes/unreleased/Security-20251218-164725.yaml b/.changes/unreleased/Security-20251218-164725.yaml new file mode 100644 index 0000000..da30450 --- /dev/null +++ b/.changes/unreleased/Security-20251218-164725.yaml @@ -0,0 +1,3 @@ +kind: Security +body: Update github action perission +time: 2025-12-18T16:47:25.197844-05:00