Skip to content

fix(ci): support external and Dependabot PR service test workflows#578

Open
vishal-bala wants to merge 5 commits into
mainfrom
ci/test-dependabot-PRs
Open

fix(ci): support external and Dependabot PR service test workflows#578
vishal-bala wants to merge 5 commits into
mainfrom
ci/test-dependabot-PRs

fix(ci): harden external PR workflow execution

2b393a3
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL succeeded May 8, 2026 in 2s

1 new alert including 1 medium severity security vulnerability

New alerts in code changed by this pull request

Security Alerts:

  • 1 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 71 in .github/workflows/test.yml

See this annotation in the file changed.

Code scanning / CodeQL

Workflow does not contain permissions Medium test

Actions job or workflow does not limit the permissions of the GITHUB_TOKEN. Consider setting an explicit permissions block, using the following as a minimal starting point: {contents: read}