GitHub Workflows security hardening
@@ -6,6 +6,9 @@ on:
pull_request:
branches: [ master ]
+permissions:
+ contents: read # to fetch code (actions/checkout)
+
jobs:
job:
name: ${{ matrix.name }}-build-and-test
job1:
name: adress-sanitizer