intility / intility/json-api-toolkit

Drop top-level workflow permissions

Open
#138 0 comments 0 reactions 1 assignee View on GitHub

@erlendellefsen is already working on this.

Since Aug 20, 2026.

enhancement github-actions
Dominant language
C#
Stars
7
Forks
0
Avg merge
1d 4h
Merged PRs (30d)
23

Description

release-please.yml and docs.yml declare write permissions at the workflow level and on the jobs. Future jobs added to either file would silently inherit the writes.

Acceptance criteria

  • Workflow-level permissions: block removed from release-please.yml
  • Workflow-level permissions: block removed from docs.yml
  • Each job declares only the permissions it needs (verify the changes job in docs.yml does not need pages: write or id-token: write)
  • Workflows still succeed end to end

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.