From 41c4ff8e9ebfdf8d44327f7b123d2b96e3047bc1 Mon Sep 17 00:00:00 2001 From: Sachin Singh <152496895+SachinSingh008@users.noreply.github.com> Date: Thu, 25 Sep 2025 14:49:52 +0530 Subject: [PATCH] Update approve-runs-from-forks.md --- .../manage-workflow-runs/approve-runs-from-forks.md | 7 +++++-- 1 file changed, 5 insertions(+), 2 deletions(-) diff --git a/content/actions/how-tos/manage-workflow-runs/approve-runs-from-forks.md b/content/actions/how-tos/manage-workflow-runs/approve-runs-from-forks.md index 6d93ce7cf4a0..81182ce97006 100644 --- a/content/actions/how-tos/manage-workflow-runs/approve-runs-from-forks.md +++ b/content/actions/how-tos/manage-workflow-runs/approve-runs-from-forks.md @@ -16,9 +16,12 @@ redirect_from: - /actions/managing-workflow-runs-and-deployments/managing-workflow-runs/approving-workflow-runs-from-private-forks --- -Workflow runs triggered by a contributor's pull request from a fork may require manual approval from a maintainer with write access. You can configure workflow approval requirements for a [repository](/repositories/managing-your-repositorys-settings-and-features/enabling-features-for-your-repository/managing-github-actions-settings-for-a-repository#configuring-required-approval-for-workflows-from-public-forks), [organization](/organizations/managing-organization-settings/disabling-or-limiting-github-actions-for-your-organization#configuring-required-approval-for-workflows-from-public-forks), or [enterprise](/enterprise-cloud@latest/admin/policies/enforcing-policies-for-your-enterprise/enforcing-policies-for-github-actions-in-your-enterprise#enforcing-a-policy-for-fork-pull-requests-in-your-enterprise). +When external contributors submit pull requests from their forked repositories, the automated workflows (like tests or builds) may need your approval before running. This security measure prevents untrusted code from accessing your repository's resources and secrets. -Workflow runs that have been awaiting approval for more than 30 days are automatically deleted. +**Configuration levels:** +Configure approval requirements at the [repository](/repositories/managing-your-repositorys-settings-and-features/enabling-features-for-your-repository/managing-github-actions-settings-for-a-repository#configuring-required-approval-for-workflows-from-public-forks), [organization](/organizations/managing-organization-settings/disabling-or-limiting-github-actions-for-your-organization#configuring-required-approval-for-workflows-from-public-forks), or [enterprise](/enterprise-cloud@latest/admin/policies/enforcing-policies-for-your-enterprise/enforcing-policies-for-github-actions-in-your-enterprise#enforcing-a-policy-for-fork-pull-requests-in-your-enterprise) level. + +**Auto-deletion:** Workflow runs awaiting approval for more than 30 days are automatically deleted. ## Approving workflow runs on a pull request from a public fork