Skip to content

fix: add explicit read permissions to e2e workflows#1796

Open
stekik wants to merge 1 commit into
kyma-project:mainfrom
stekik:fix/codeql-workflow-permissions
Open

fix: add explicit read permissions to e2e workflows#1796
stekik wants to merge 1 commit into
kyma-project:mainfrom
stekik:fix/codeql-workflow-permissions

Conversation

@stekik
Copy link
Copy Markdown
Contributor

@stekik stekik commented Apr 1, 2026

  • Add permissions block to e2e-all.yaml and e2e-tests.yaml
  • Set contents: read to follow least privilege principle
  • Resolves CodeQL alert: missing-workflow-permissions

Description
Resolves CodeQL security alert actions/missing-workflow-permissions by adding explicit permissions blocks to both e2e workflows.

Action that proves workflow is correct: https://github.com/stekik/cloud-manager/actions/runs/23842826820/job/69502560920

Related issue(s)

- Add permissions block to e2e-all.yaml and e2e-tests.yaml
- Set contents: read to follow least privilege principle
- Resolves CodeQL alert: missing-workflow-permissions
@stekik stekik requested a review from a team as a code owner April 1, 2026 09:57
@hyperspace-insights
Copy link
Copy Markdown
Contributor

Control Panel

Hi, I'm an AI-powered Review Bot that helps you with summarizing and reviewing pull requests.
To interact with me, just use the following actions:

  • 📝 Summarize PR
  • 🔍 Review
  • 🗑️ Delete all bot comments and reviews

💌 Have ideas or want to contribute? Create an issue and share your thoughts with us!
📑 Check out the documentation for more information.
📬 Subscribe to the Hyperspace PR Bot DL to get the latest announcements and pilot features!

Made with ❤️ by Hyperspace.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant