From a756d8cc2a4d74e7570d860ecc3883965b40471b Mon Sep 17 00:00:00 2001 From: Avery-Dunn <62066438+Avery-Dunn@users.noreply.github.com> Date: Wed, 4 Mar 2026 11:19:33 -0800 Subject: [PATCH] Potential fix for code scanning alert no. 74: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .github/workflows/python-package.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/python-package.yml b/.github/workflows/python-package.yml index 6c1626b6..881cb237 100644 --- a/.github/workflows/python-package.yml +++ b/.github/workflows/python-package.yml @@ -13,6 +13,8 @@ on: jobs: ci: + permissions: + contents: read env: # Fake a TRAVIS env so that the pre-existing test cases would behave like before TRAVIS: true