secure-repo icon indicating copy to clipboard operation
secure-repo copied to clipboard

[KB] Add GitHub token permissions for benc-uk/workflow-dispatch Action

Open step-security-bot opened this issue 3 years ago • 2 comments

Knowledge Base is missing for benc-uk/workflow-dispatch.

step-security-bot avatar Oct 12 '22 21:10 step-security-bot

Analysis

Action Name: benc-uk/workflow-dispatch
Action Type: Node
GITHUB_TOKEN Matches: token,pat-token,GITHUB_TOKEN,TOKEN
Top language: TypeScript
Stars: 196
Private: false
Forks: 68

Endpoints Found

Endpoint Permission
actions.listRepoWorkflows read

FollowUp Links.

https://github.com/benc-uk/workflow-dispatch/blob/827565b908f387ffd483c84312273ae185c06c8a/src/main.ts

action-security.yml

name: 'Workflow Dispatch'
github-token:
  action-input:
    input: token
    is-default: false
  permissions:
    actions: read

step-security-bot avatar Oct 12 '22 21:10 step-security-bot

I have taken this issue

vandana41 avatar Oct 13 '22 06:10 vandana41