Skip to content

Commit bb0146f

Browse files
committed
Add permissions
1 parent db4a17e commit bb0146f

File tree

1 file changed

+18
-0
lines changed

1 file changed

+18
-0
lines changed

.github/workflows/update-docker-images.yml

Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -174,6 +174,12 @@ jobs:
174174
platforms: linux/arm,linux/arm64,linux/amd64,linux/ppc64le,linux/s390x
175175
image: debian
176176
tag: ${{ needs.variables.outputs.kic-tag }}
177+
permissions:
178+
contents: read
179+
actions: read
180+
security-events: write
181+
id-token: write
182+
packages: write
177183
secrets: inherit
178184
if: ${{ needs.check.outputs.needs-updating-debian == 'true' }}
179185

@@ -185,6 +191,12 @@ jobs:
185191
platforms: linux/arm,linux/arm64,linux/amd64,linux/ppc64le,linux/s390x
186192
image: alpine
187193
tag: ${{ needs.variables.outputs.kic-tag }}
194+
permissions:
195+
contents: read
196+
actions: read
197+
security-events: write
198+
id-token: write
199+
packages: write
188200
secrets: inherit
189201
if: ${{ needs.check.outputs.needs-updating-alpine == 'true' }}
190202

@@ -196,5 +208,11 @@ jobs:
196208
platforms: linux/arm64,linux/amd64,linux/ppc64le,linux/s390x
197209
image: ubi
198210
tag: ${{ needs.variables.outputs.kic-tag }}
211+
permissions:
212+
contents: read
213+
actions: read
214+
security-events: write
215+
id-token: write
216+
packages: write
199217
secrets: inherit
200218
if: ${{ needs.check.outputs.needs-updating-ubi == 'true' }}

0 commit comments

Comments
 (0)