diff --git a/.github/workflows/codeql-analysis.yml b/.github/workflows/codeql-analysis.yml index 1ff9f43d9a..7f618454fa 100644 --- a/.github/workflows/codeql-analysis.yml +++ b/.github/workflows/codeql-analysis.yml @@ -15,6 +15,9 @@ on: push: branches: [ main ] +permissions: + security-events: write + jobs: analyze: # This repository only have Java and Rust code. Rust is not supported currently. diff --git a/.github/workflows/stale-bot.yml b/.github/workflows/stale-bot.yml index 49ddc47c00..d9f2007ab1 100644 --- a/.github/workflows/stale-bot.yml +++ b/.github/workflows/stale-bot.yml @@ -16,6 +16,9 @@ on: schedule: - cron: '0 20 * * SUN' # every Sunday at 20 am UTC: PST 0:00 AM " +permissions: + issues: write + pull-requests: write jobs: stale-close: