diff --git a/.github/workflows/build-publish.yml b/.github/workflows/build-publish.yml index 2cfa515..eb355b3 100644 --- a/.github/workflows/build-publish.yml +++ b/.github/workflows/build-publish.yml @@ -2,6 +2,7 @@ name: build-publish-scan on: push: branches: + main permissions: actions: read # for detecting the Github Actions environment. id-token: write # for creating OIDC tokens for signing.