Skip to content

Conversation

@Mossaka
Copy link
Member

@Mossaka Mossaka commented Mar 6, 2025

By explicitly adding the read-all permission to all workflows, we can
reduce the number of false positives in the scorecard check.

E.g. https://github.com/containerd/runwasi/security/code-scanning/21

Signed-off-by: Jiaxiao (mossaka) Zhou duibao55328@gmail.com

By explicitly adding the read-all permission to all workflows, we can
reduce the number of false positives in the scorecard check.

E.g. https://github.com/containerd/runwasi/security/code-scanning/21

Signed-off-by: Jiaxiao (mossaka) Zhou <duibao55328@gmail.com>
@github-actions github-actions bot added the T-CI label Mar 6, 2025
@Mossaka Mossaka linked an issue Mar 6, 2025 that may be closed by this pull request
Copy link
Collaborator

@jprendes jprendes left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@jprendes jprendes merged commit 412c837 into containerd:main Mar 6, 2025
7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Code Scanning Alert (high): no topLevel permission defined

2 participants