Add explicit permissions to Docker security scan workflow

Set minimal permissions: contents read for checkout, security-events
write for SARIF upload to the GitHub Security tab.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
This commit is contained in:
Adil Hafeez 2026-02-13 15:46:05 -08:00
parent c7c9eb242a
commit 4aa7bd5767
No known key found for this signature in database
GPG key ID: 9B18EF7691369645

View file

@ -9,6 +9,10 @@ on:
- main
pull_request:
permissions:
contents: read
security-events: write
jobs:
scan:
runs-on: ubuntu-latest