Skip to main content

Set Default GitHub Workflow Token Permissions to Read Only

tip

This check is currently under development and not yet implemented. Click here to learn how you can help.

Description

Ensure GitHub organization default workflow token permissions are set to read-only

Details

  • Default Category: github workflow permissions
  • Default Priority Group: P9
  • C-SCRM: true
  • Mitre: CWE-250
  • Mitre: CAPEC-69