Skip to main content

Set Default GitHub Workflow Token Permissions to Read Only

tip

This check is currently under development and not yet implemented. Click here to learn how you can help.

Use Case

  • Incubating: expected
  • Active: expected
  • Retiring: n/a

Description

Github Org Default Workflow Token Permissions are Set to Read Only

Details

  • C-SCRM: true
  • Priority Group: P9
  • Mitre: CWE-250