diff --git a/.github/linters/.checkov.yml b/.github/linters/.checkov.yml new file mode 100644 index 0000000..2645248 --- /dev/null +++ b/.github/linters/.checkov.yml @@ -0,0 +1,3 @@ +quiet: true +skip-check: + - CKV_GHA_7 diff --git a/.github/workflows/example-workflow.yml b/.github/workflows/example-workflow.yml index b14ebb8..8853bc8 100644 --- a/.github/workflows/example-workflow.yml +++ b/.github/workflows/example-workflow.yml @@ -9,6 +9,10 @@ on: default: 'World' type: string +permissions: + actions: read + contents: read + jobs: say-hello: name: Say Hello