From 28ab41c47f0a7984fd884f9829ff00cd1393a42f Mon Sep 17 00:00:00 2001 From: Ahmed Ejaz Date: Thu, 18 Sep 2025 03:17:22 +0500 Subject: [PATCH] Potential fix for code scanning alert no. 253: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .github/workflows/move-dependency-pr-to-code-review.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/move-dependency-pr-to-code-review.yml b/.github/workflows/move-dependency-pr-to-code-review.yml index eed1714d01..18fa5b4857 100644 --- a/.github/workflows/move-dependency-pr-to-code-review.yml +++ b/.github/workflows/move-dependency-pr-to-code-review.yml @@ -1,4 +1,8 @@ name: Auto-move Dependabot PRs to Code Review +permissions: + contents: read + pull-requests: write + project: write on: pull_request: