@@ -9,13 +9,6 @@ concurrency:
99 group : environment-${{ github.event.pull_request.number }}
1010 cancel-in-progress : false
1111
12- permissions :
13- id-token : write
14- contents : read
15- actions : write
16- issues : write
17- pull-requests : write
18-
1912jobs :
2013 set-environment-id :
2114 name : Set Environment ID
4841 name : Build Application
4942 runs-on : codebuild-nhsd-nrlf-ci-build-project-${{ github.run_id }}-${{ github.run_attempt }}
5043 environment : pull-request
44+ permissions :
45+ id-token : write
46+ contents : read
47+ actions : write
48+ issues : write
49+ pull-requests : write
50+
5151 steps :
5252 - name : Git Clone - ${{ github.event.pull_request.head.ref }}
5353 uses : actions/checkout@v4
@@ -110,6 +110,12 @@ jobs:
110110 runs-on : codebuild-nhsd-nrlf-ci-build-project-${{ github.run_id }}-${{ github.run_attempt }}
111111 environment : pull-request
112112 needs : [set-environment-id, build]
113+ permissions :
114+ id-token : write
115+ contents : read
116+ actions : write
117+ issues : write
118+ pull-requests : write
113119
114120 steps :
115121 - name : Git Clone - ${{ github.event.pull_request.head.ref }}
@@ -194,6 +200,9 @@ jobs:
194200 needs : [set-environment-id, deploy]
195201 environment : pull-request
196202 runs-on : codebuild-nhsd-nrlf-ci-build-project-${{ github.run_id }}-${{ github.run_attempt }}
203+ permissions :
204+ id-token : write
205+ contents : read
197206
198207 steps :
199208 - name : Git Clone - ${{ github.event.pull_request.head.ref }}
@@ -232,6 +241,10 @@ jobs:
232241 needs : [set-environment-id, integration-test]
233242 environment : pull-request
234243 runs-on : codebuild-nhsd-nrlf-ci-build-project-${{ github.run_id }}-${{ github.run_attempt }}
244+ permissions :
245+ id-token : write
246+ contents : read
247+
235248 steps :
236249 - name : Git Clone - ${{ github.event.pull_request.head.ref }}
237250 uses : actions/checkout@v4
@@ -266,6 +279,10 @@ jobs:
266279 needs : [set-environment-id, integration-test]
267280 environment : pull-request
268281 runs-on : codebuild-nhsd-nrlf-ci-build-project-${{ github.run_id }}-${{ github.run_attempt }}
282+ permissions :
283+ id-token : write
284+ contents : read
285+ actions : write
269286
270287 steps :
271288 - name : Git Clone - ${{ github.event.pull_request.head.ref }}
0 commit comments