René's URL Explorer Experiment


Title: ci: add GitHub token permissions by varunsh-coder · Pull Request #92999 · python/cpython · GitHub

Open Graph Title: ci: add GitHub token permissions by varunsh-coder · Pull Request #92999 · python/cpython

X Title: ci: add GitHub token permissions by varunsh-coder · Pull Request #92999 · python/cpython

Description: GitHub asks developers to define workflow permissions, see https://github.blog/changelog/2021-04-20-github-actions-control-permissions-for-github_token/ and https://docs.github.com/en/actions/security-guides/automatic-token-authentication#modifying-the-permissions-for-the-github_token for securing GitHub workflows against supply-chain attacks. The Open Source Security Foundation (OpenSSF) Scorecards also treats not setting token permissions as a high-risk issue. This PR adds minimum token permissions for the GITHUB_TOKEN using https://github.com/step-security/secure-workflows. This project is part of the top 100 critical projects as per OpenSSF (https://github.com/ossf/wg-securing-critical-projects), so fixing the token permissions to improve security.

Open Graph Description: GitHub asks developers to define workflow permissions, see https://github.blog/changelog/2021-04-20-github-actions-control-permissions-for-github_token/ and https://docs.github.com/en/actions/secur...

X Description: GitHub asks developers to define workflow permissions, see https://github.blog/changelog/2021-04-20-github-actions-control-permissions-for-github_token/ and https://docs.github.com/en/actions/secur...

Opengraph URL: https://github.com/python/cpython/pull/92999

X: @github

direct link

Domain: github.com

route-pattern/:user_id/:repository/pull/:id/files(.:format)
route-controllerpull_requests
route-actionfiles
fetch-noncev2:644aa65b-9b9c-af68-7928-22eacfcdf010
current-catalog-service-hashae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b
request-idDC1E:DC558:14B213F:1BADF9E:6969B3BD
html-safe-nonce0ed2fcf376ca201c1bdebad7ae07b108f109abc063c374f2d9b7bc3701fe78a3
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJEQzFFOkRDNTU4OjE0QjIxM0Y6MUJBREY5RTo2OTY5QjNCRCIsInZpc2l0b3JfaWQiOiIyMTIyOTM5MzM3NjAxMDM3MjQ2IiwicmVnaW9uX2VkZ2UiOiJpYWQiLCJyZWdpb25fcmVuZGVyIjoiaWFkIn0=
visitor-hmac65d2ec6838015954d8e279cb2bb7a8ced2c2e5ab87c9bf88c0f4e0e5d0253f6a
hovercard-subject-tagpull_request:942241109
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///pull_requests/show/files
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/python/cpython/pull/92999/files
twitter:imagehttps://avatars.githubusercontent.com/u/25015917?s=400&v=4
twitter:cardsummary_large_image
og:imagehttps://avatars.githubusercontent.com/u/25015917?s=400&v=4
og:image:altGitHub asks developers to define workflow permissions, see https://github.blog/changelog/2021-04-20-github-actions-control-permissions-for-github_token/ and https://docs.github.com/en/actions/secur...
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
Noneb23b8fcc855cd29bb04d6c94aafa62d336bf44eefa8229444eecc968cad03aee
turbo-cache-controlno-preview
diff-viewunified
go-importgithub.com/python/cpython git https://github.com/python/cpython.git
octolytics-dimension-user_id1525981
octolytics-dimension-user_loginpython
octolytics-dimension-repository_id81598961
octolytics-dimension-repository_nwopython/cpython
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forkfalse
octolytics-dimension-repository_network_root_id81598961
octolytics-dimension-repository_network_root_nwopython/cpython
turbo-body-classeslogged-out env-production page-responsive full-width
disable-turbotrue
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
release0672399d88424758731ec07fe24509e23bb17fb5
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/python/cpython/pull/92999/files#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fpython%2Fcpython%2Fpull%2F92999%2Ffiles
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fpython%2Fcpython%2Fpull%2F92999%2Ffiles
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fpull_requests%2Fshow%2Ffiles&source=header-repo&source_repo=python%2Fcpython
Reloadhttps://github.com/python/cpython/pull/92999/files
Reloadhttps://github.com/python/cpython/pull/92999/files
Reloadhttps://github.com/python/cpython/pull/92999/files
python https://github.com/python
cpythonhttps://github.com/python/cpython
Please reload this pagehttps://github.com/python/cpython/pull/92999/files
Notifications https://github.com/login?return_to=%2Fpython%2Fcpython
Fork 33.9k https://github.com/login?return_to=%2Fpython%2Fcpython
Star 71.1k https://github.com/login?return_to=%2Fpython%2Fcpython
Code https://github.com/python/cpython
Issues 5k+ https://github.com/python/cpython/issues
Pull requests 2.1k https://github.com/python/cpython/pulls
Actions https://github.com/python/cpython/actions
Projects 31 https://github.com/python/cpython/projects
Security Uh oh! There was an error while loading. Please reload this page. https://github.com/python/cpython/security
Please reload this pagehttps://github.com/python/cpython/pull/92999/files
Insights https://github.com/python/cpython/pulse
Code https://github.com/python/cpython
Issues https://github.com/python/cpython/issues
Pull requests https://github.com/python/cpython/pulls
Actions https://github.com/python/cpython/actions
Projects https://github.com/python/cpython/projects
Security https://github.com/python/cpython/security
Insights https://github.com/python/cpython/pulse
Sign up for GitHub https://github.com/signup?return_to=%2Fpython%2Fcpython%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://github.com/login?return_to=%2Fpython%2Fcpython%2Fissues%2Fnew%2Fchoose
ewdurbinhttps://github.com/ewdurbin
python:mainhttps://github.com/python/cpython/tree/main
varunsh-coder:token-permshttps://github.com/varunsh-coder/cpython/tree/token-perms
Conversation 10 https://github.com/python/cpython/pull/92999
Commits 1 https://github.com/python/cpython/pull/92999/commits
Checks 0 https://github.com/python/cpython/pull/92999/checks
Files changed https://github.com/python/cpython/pull/92999/files
Please reload this pagehttps://github.com/python/cpython/pull/92999/files
ci: add GitHub token permissions https://github.com/python/cpython/pull/92999/files#top
Show all changes 1 commit https://github.com/python/cpython/pull/92999/files
6f9c098 ci: add GitHub token permissions varunsh-coder May 20, 2022 https://github.com/python/cpython/pull/92999/commits/6f9c0985aa2b1ebe28c1d33952dedb035bab11ce
Clear filters https://github.com/python/cpython/pull/92999/files
Please reload this pagehttps://github.com/python/cpython/pull/92999/files
Please reload this pagehttps://github.com/python/cpython/pull/92999/files
build.yml https://github.com/python/cpython/pull/92999/files#diff-5c3fa597431eda03ac3339ae6bf7f05e1a50d6fc7333679ec38e21b337cb6721
build_msi.yml https://github.com/python/cpython/pull/92999/files#diff-ccd65a69b3fba0d0aa8703c679eb956d549bfafc8545604d2fd52ecc41c75254
doc.yml https://github.com/python/cpython/pull/92999/files#diff-7871fa1d10e6bf511d9cfda5a6874d1a75acb950fb1bc9fee6057eff13257521
new-bugs-announce-notifier.yml https://github.com/python/cpython/pull/92999/files#diff-2ee453aa4bc60a5cec0eb48699852292f1ff862fa61c0e5b39605202075bc3c5
https://github.com/python/cpython/blob/main/.github/CODEOWNERS#L66
.github/workflows/build.ymlhttps://github.com/python/cpython/pull/92999/files#diff-5c3fa597431eda03ac3339ae6bf7f05e1a50d6fc7333679ec38e21b337cb6721
View file https://github.com/varunsh-coder/cpython/blob/6f9c0985aa2b1ebe28c1d33952dedb035bab11ce/.github/workflows/build.yml
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/python/cpython/pull/92999/{{ revealButtonHref }}
https://github.com/python/cpython/pull/92999/files#diff-5c3fa597431eda03ac3339ae6bf7f05e1a50d6fc7333679ec38e21b337cb6721
https://github.com/python/cpython/pull/92999/files#diff-5c3fa597431eda03ac3339ae6bf7f05e1a50d6fc7333679ec38e21b337cb6721
https://github.com/python/cpython/blob/main/.github/CODEOWNERS#L66
.github/workflows/build_msi.ymlhttps://github.com/python/cpython/pull/92999/files#diff-ccd65a69b3fba0d0aa8703c679eb956d549bfafc8545604d2fd52ecc41c75254
View file https://github.com/varunsh-coder/cpython/blob/6f9c0985aa2b1ebe28c1d33952dedb035bab11ce/.github/workflows/build_msi.yml
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/python/cpython/pull/92999/{{ revealButtonHref }}
https://github.com/python/cpython/pull/92999/files#diff-ccd65a69b3fba0d0aa8703c679eb956d549bfafc8545604d2fd52ecc41c75254
https://github.com/python/cpython/pull/92999/files#diff-ccd65a69b3fba0d0aa8703c679eb956d549bfafc8545604d2fd52ecc41c75254
https://github.com/python/cpython/blob/main/.github/CODEOWNERS#L66
.github/workflows/doc.ymlhttps://github.com/python/cpython/pull/92999/files#diff-7871fa1d10e6bf511d9cfda5a6874d1a75acb950fb1bc9fee6057eff13257521
View file https://github.com/varunsh-coder/cpython/blob/6f9c0985aa2b1ebe28c1d33952dedb035bab11ce/.github/workflows/doc.yml
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/python/cpython/pull/92999/{{ revealButtonHref }}
https://github.com/python/cpython/pull/92999/files#diff-7871fa1d10e6bf511d9cfda5a6874d1a75acb950fb1bc9fee6057eff13257521
https://github.com/python/cpython/pull/92999/files#diff-7871fa1d10e6bf511d9cfda5a6874d1a75acb950fb1bc9fee6057eff13257521
https://github.com/python/cpython/blob/main/.github/CODEOWNERS#L66
.github/workflows/new-bugs-announce-notifier.ymlhttps://github.com/python/cpython/pull/92999/files#diff-2ee453aa4bc60a5cec0eb48699852292f1ff862fa61c0e5b39605202075bc3c5
View file https://github.com/varunsh-coder/cpython/blob/6f9c0985aa2b1ebe28c1d33952dedb035bab11ce/.github/workflows/new-bugs-announce-notifier.yml
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/python/cpython/pull/92999/{{ revealButtonHref }}
https://github.com/python/cpython/pull/92999/files#diff-2ee453aa4bc60a5cec0eb48699852292f1ff862fa61c0e5b39605202075bc3c5
https://github.com/python/cpython/pull/92999/files#diff-2ee453aa4bc60a5cec0eb48699852292f1ff862fa61c0e5b39605202075bc3c5
https://github.com/python/cpython/pull/92999/files#diff-2ee453aa4bc60a5cec0eb48699852292f1ff862fa61c0e5b39605202075bc3c5
https://github.com/python/cpython/pull/92999/files#diff-2ee453aa4bc60a5cec0eb48699852292f1ff862fa61c0e5b39605202075bc3c5
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.