Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings

ci: scope down GitHub Token permissions#570

Merged
darklight3it merged 11 commits intoaws:mainaws/aws-lambda-java-libs:mainfrom
AdnaneKhan:update/scopedown-tokenAdnaneKhan/aws-lambda-java-libs:update/scopedown-tokenCopy head branch name to clipboard
Jan 13, 2026
Merged

ci: scope down GitHub Token permissions#570
darklight3it merged 11 commits intoaws:mainaws/aws-lambda-java-libs:mainfrom
AdnaneKhan:update/scopedown-tokenAdnaneKhan/aws-lambda-java-libs:update/scopedown-tokenCopy head branch name to clipboard

Conversation

@AdnaneKhan
Copy link
Contributor

Scope Down GitHub Token Permissions

This PR updates GitHub Actions workflows to use minimal required permissions instead of the default elevated permissions.

Why This Matters

Following the principle of least privilege, workflows should only have the specific permissions they need to function.

Changes

This PR adds explicit permissions: blocks to workflows that currently rely on default permissions, scoping them down to only what's required for their operations.

Please review the changes to ensure the specified permissions match your workflow requirements.

@AdnaneKhan AdnaneKhan marked this pull request as ready for review October 21, 2025 20:37
Copy link
Contributor

@darklight3it darklight3it left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM! Thanks

Copy link
Member

@maxday maxday left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM! thanks

@darklight3it darklight3it merged commit b5d9f76 into aws:main Jan 13, 2026
10 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

Comments

Close sidebar
Morty Proxy This is a proxified and sanitized view of the page, visit original site.