Skip to content

[HUDI-8180] Make permissions more strict for scheduled workflow#11907

Merged
yihua merged 1 commit intoapache:masterfrom
jonvex:restrict_permissions_scheduled_workflow
Sep 6, 2024
Merged

[HUDI-8180] Make permissions more strict for scheduled workflow#11907
yihua merged 1 commit intoapache:masterfrom
jonvex:restrict_permissions_scheduled_workflow

Conversation

@jonvex
Copy link
Contributor

@jonvex jonvex commented Sep 6, 2024

Change Logs

make permissions more strict now that we know the delete cache workflow works.
According to actions/gh-actions-cache#85 it is the write action permission that we need for delete cache

ok, found proof in the documentation: https://docs.github.com/en/rest/actions/cache?apiVersion=2022-11-28#delete-github-actions-caches-for-a-repository-using-a-cache-key

Impact

more security for the repo

Risk level (write none, low medium or high below)

low

Documentation Update

N/A

Contributor's checklist

  • Read through contributor's guide
  • Change Logs and Impact were stated clearly
  • Adequate tests were added if applicable
  • CI passed

@hudi-bot
Copy link
Collaborator

hudi-bot commented Sep 6, 2024

CI report:

Bot commands @hudi-bot supports the following commands:
  • @hudi-bot run azure re-run the last Azure build

@github-actions github-actions bot added the size:XS PR with lines of changes in <= 10 label Sep 6, 2024
@yihua yihua merged commit 5e57576 into apache:master Sep 6, 2024
@yihua yihua changed the title [HUDI-8180] make permissions more strict for scheduled workflow [HUDI-8180] Make permissions more strict for scheduled workflow Sep 6, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size:XS PR with lines of changes in <= 10

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants