diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index d55b18b..481d0f5 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -117,6 +117,8 @@ jobs: lint: runs-on: ubuntu-latest + permissions: + contents: read steps: - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 diff --git a/.github/workflows/verify-dist.yml b/.github/workflows/verify-dist.yml index e3c686a..9babf2a 100644 --- a/.github/workflows/verify-dist.yml +++ b/.github/workflows/verify-dist.yml @@ -20,6 +20,8 @@ jobs: name: Verify dist/index.js file runs-on: ubuntu-latest + permissions: + contents: read steps: - uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4 diff --git a/action.yml b/action.yml index 5861d3a..93027b9 100644 --- a/action.yml +++ b/action.yml @@ -167,7 +167,7 @@ runs: INPUT_WORKING_DIRECTORY: ${{ inputs.working_directory }} INPUT_DISABLE_TELEMETRY: ${{ inputs.disable_telemetry }} INPUT_DISABLE_SAFE_DIRECTORY: ${{ inputs.disable_safe_directory }} - uses: docker://ghcr.io/getsentry/action-release-image:ab-bump-sentry-node-v10 + uses: docker://ghcr.io/getsentry/action-release-image:ab-add-workflow-permissions # For actions running on macos or windows runners, we use a composite # action approach which allows us to install the arch specific sentry-cli