From e8866a83edf51f5a5dcd8097c6d4fe4cdef49cdd Mon Sep 17 00:00:00 2001 From: Alex Date: Tue, 27 Sep 2022 20:23:03 +0200 Subject: [PATCH] build: harden GitHub Workflow permissions (#5660) Signed-off-by: Alex Low --- .github/workflows/release.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index 673e05c069e5..d8f2cd854a51 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -6,6 +6,9 @@ on: jobs: release: + permissions: + contents: write # to upload release asset (actions/upload-release-asset) + name: Release cmd/protoc-gen-go-grpc runs-on: ubuntu-latest if: startsWith(github.event.release.tag_name, 'cmd/protoc-gen-go-grpc/')