From 8b776c34d172eaba5787248d5c091f3348ccc2fc Mon Sep 17 00:00:00 2001 From: Ahmad <103906421+ahmadk953@users.noreply.github.com> Date: Sun, 4 May 2025 15:06:36 -0400 Subject: [PATCH 1/3] Potential fix for code scanning alert no. 13: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> Signed-off-by: Ahmad <103906421+ahmadk953@users.noreply.github.com> --- .github/workflows/npm-build-and-compile.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/npm-build-and-compile.yml b/.github/workflows/npm-build-and-compile.yml index 51c4c1a..67c665b 100644 --- a/.github/workflows/npm-build-and-compile.yml +++ b/.github/workflows/npm-build-and-compile.yml @@ -1,5 +1,8 @@ name: NodeJS Build and Compile +permissions: + contents: read + on: push: branches: ["main"] From 046e3dcd06f7d74e37b88b0dc027b65fd6ea205d Mon Sep 17 00:00:00 2001 From: Ahmad <103906421+ahmadk953@users.noreply.github.com> Date: Sun, 4 May 2025 15:07:39 -0400 Subject: [PATCH 2/3] ci: potential fix for code scanning alert no. 12: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> Signed-off-by: Ahmad <103906421+ahmadk953@users.noreply.github.com> --- .github/workflows/commitlint.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/commitlint.yml b/.github/workflows/commitlint.yml index c33af6f..47f2e51 100644 --- a/.github/workflows/commitlint.yml +++ b/.github/workflows/commitlint.yml @@ -2,6 +2,9 @@ name: Commitlint on: [push, pull_request] +permissions: + contents: read + jobs: commitlint: name: Run commitlint scanning From ac578f5c1f77f5db03aa33792de20f034b9f5d6a Mon Sep 17 00:00:00 2001 From: Ahmad <103906421+ahmadk953@users.noreply.github.com> Date: Sun, 4 May 2025 15:19:11 -0400 Subject: [PATCH 3/3] ci: update .github/workflows/npm-build-and-compile.yml Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> Signed-off-by: Ahmad <103906421+ahmadk953@users.noreply.github.com> --- .github/workflows/npm-build-and-compile.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/npm-build-and-compile.yml b/.github/workflows/npm-build-and-compile.yml index 67c665b..c266195 100644 --- a/.github/workflows/npm-build-and-compile.yml +++ b/.github/workflows/npm-build-and-compile.yml @@ -2,7 +2,7 @@ name: NodeJS Build and Compile permissions: contents: read - + actions: write on: push: branches: ["main"]