From cb5c54bd1cb06e081aea61a95814feb259da38d7 Mon Sep 17 00:00:00 2001 From: Kai Wang Date: Wed, 3 Dec 2025 00:31:09 +0800 Subject: [PATCH 1/3] Potential fix for code scanning alert no. 10: Workflow does not contain permissions Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .github/workflows/test.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/test.yml b/.github/workflows/test.yml index eaaaf7c..075a604 100644 --- a/.github/workflows/test.yml +++ b/.github/workflows/test.yml @@ -1,4 +1,6 @@ name: Extension Tests +permissions: + contents: read on: push: From 27548b8851f6cd07be4f429fec5a6fa0ed0a566b Mon Sep 17 00:00:00 2001 From: "copilot-swe-agent[bot]" <198982749+Copilot@users.noreply.github.com> Date: Tue, 2 Dec 2025 16:35:31 +0000 Subject: [PATCH 2/3] Initial plan From ac7547a82d5af905b57824a60e87cead5bef369f Mon Sep 17 00:00:00 2001 From: "copilot-swe-agent[bot]" <198982749+Copilot@users.noreply.github.com> Date: Tue, 2 Dec 2025 16:37:07 +0000 Subject: [PATCH 3/3] Move permissions block after on block for consistency Co-authored-by: Sorkai <35844770+Sorkai@users.noreply.github.com> --- .github/workflows/test.yml | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/.github/workflows/test.yml b/.github/workflows/test.yml index 075a604..f4ffc16 100644 --- a/.github/workflows/test.yml +++ b/.github/workflows/test.yml @@ -1,6 +1,4 @@ name: Extension Tests -permissions: - contents: read on: push: @@ -9,6 +7,9 @@ on: branches: [ main ] workflow_dispatch: +permissions: + contents: read + jobs: test: strategy: