Skip to content

Restrict permissions for the GITHUB_TOKEN in .github/workflows/arc-se… #60

Restrict permissions for the GITHUB_TOKEN in .github/workflows/arc-se…

Restrict permissions for the GITHUB_TOKEN in .github/workflows/arc-se… #60

Workflow file for this run

name: Publish Docker
on:
workflow_dispatch:
push:
jobs:
build:
runs-on: ubuntu-latest
steps:
- uses: step-security/harden-runner@v2
with:
egress-policy: audit
- uses: actions/checkout@v3
- name: Publish to Registry
uses: elgohr/Publish-Docker-Github-Action@v5
with:
name: ${{ github.repository }}/prod:latest
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
registry: ghcr.io