From c7f59a4d33bba646271bd3d1bfcffe075d82a78f Mon Sep 17 00:00:00 2001 From: Tw93 Date: Sat, 14 Mar 2026 23:08:29 +0800 Subject: [PATCH] Potential fix for code scanning alert no. 7: Checkout of untrusted code in trusted context Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- .github/workflows/check.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/check.yml b/.github/workflows/check.yml index 34bcf1a..8359996 100644 --- a/.github/workflows/check.yml +++ b/.github/workflows/check.yml @@ -66,6 +66,8 @@ jobs: name: Check runs-on: macos-latest needs: format + permissions: + contents: read steps: - name: Checkout