Skip to content

Commit 4dcaa8d

Browse files
authored
chore: Replace pull_request_target with pull_request in PR title validation (#732)
Replace `pull_request_target` with `pull_request` to reduce attack surface. The semantic PR title action only reads the event payload, so elevated permissions are not needed.
1 parent cfd671f commit 4dcaa8d

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

.github/workflows/pr_title.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
name: "Validate PR title"
22

33
on:
4-
pull_request_target:
4+
pull_request:
55
types:
66
- opened
77
- edited

0 commit comments

Comments
 (0)