Act on CodeQL's suggestions for tightening security / improving performance (#338)

* Act on CodeQL's actions/missing-workflow-permissions

https://codeql.github.com/codeql-query-help/actions/actions-missing-workflow-permissions/

* Be more specific in the matched regex

And don't match a group if we don't need to match one

* Make it slightly faster since we know what after -otp-

I create a const because both expressions are looking for
the same thing
This commit is contained in:
Paulo F. Oliveira
2025-05-30 01:57:00 +01:00
committed by GitHub
parent 889e64e95a
commit 65066e38a0
8 changed files with 24 additions and 12 deletions
+1
View File
@@ -1,5 +1,6 @@
---
name: macos
permissions:
contents: read