diff --git a/.github/workflows/auto_assign.yml b/.github/workflows/auto_assign.yml index 093e194..9167b24 100644 --- a/.github/workflows/auto_assign.yml +++ b/.github/workflows/auto_assign.yml @@ -3,6 +3,9 @@ on: pull_request: types: [opened, ready_for_review] +permissions: + pull-requests: write + jobs: add-reviews: runs-on: ubuntu-latest diff --git a/.github/workflows/label_pr_on_title.yml b/.github/workflows/label_pr_on_title.yml index e6ce47d..671795b 100644 --- a/.github/workflows/label_pr_on_title.yml +++ b/.github/workflows/label_pr_on_title.yml @@ -6,6 +6,9 @@ on: types: - completed +permissions: + pull-requests: write + jobs: get_pr_details: # Guardrails to only ever run if PR recording workflow was indeed diff --git a/.github/workflows/on_merged_pr.yml b/.github/workflows/on_merged_pr.yml index 2bce046..6da5d04 100644 --- a/.github/workflows/on_merged_pr.yml +++ b/.github/workflows/on_merged_pr.yml @@ -6,6 +6,9 @@ on: types: - completed +permissions: + issues: write + jobs: get_pr_details: if: github.event.workflow_run.event == 'pull_request' && github.event.workflow_run.conclusion == 'success' diff --git a/.github/workflows/on_opened_pr.yml b/.github/workflows/on_opened_pr.yml index 9712a3f..0bb285c 100644 --- a/.github/workflows/on_opened_pr.yml +++ b/.github/workflows/on_opened_pr.yml @@ -6,6 +6,9 @@ on: types: - completed +permissions: + pull-requests: write + jobs: get_pr_details: if: ${{ github.event.workflow_run.conclusion == 'success' }}