mirror of
https://github.com/github/codeql-action.git
synced 2026-05-07 22:30:44 +00:00
Avoid using pull_request_target
Move to using `pull_request` and a permissions block.
This commit is contained in:
@@ -1,8 +1,12 @@
|
||||
name: Update dependencies
|
||||
on:
|
||||
pull_request_target:
|
||||
pull_request:
|
||||
types: [opened, synchronize, reopened, ready_for_review, labeled]
|
||||
|
||||
permissions:
|
||||
issues: write
|
||||
contents: write
|
||||
|
||||
jobs:
|
||||
update:
|
||||
name: Update dependencies
|
||||
|
||||
Reference in New Issue
Block a user