Grant pull-requests write permission to the labeler workflow and
read-only to everything else.
Signed-off-by: Alex Low <aleksandrosansan@gmail.com>
[ wrap to 80 columns and fix wrong author as requested by author itself ]
Signed-off-by: Christian Marangi <ansuelsmth@gmail.com>
on:
pull_request:
+permissions:
+ contents: read
+
jobs:
build:
name: Test Formalities
- 'include/kernel-*'
- 'package/kernel/**'
- 'target/linux/generic/**'
+
+permissions:
+ contents: read
+
jobs:
determine_targets:
name: Set targets
on:
- pull_request_target
+permissions:
+ contents: read
+
jobs:
labeler:
+ permissions:
+ contents: read # to determine modified files (actions/labeler)
+ pull-requests: write # to add labels to PRs (actions/labeler)
+
name: Pull Request Labeler
runs-on: ubuntu-latest
steps:
- 'tools/**'
- '.github/workflows/tools.yml'
+permissions:
+ contents: read
+
jobs:
build:
name: tools-${{ matrix.os }}