Files
naveen b0c58e0fe2 chore: Set permissions for GitHub actions (#2072)
Summary:
Restrict the GitHub token permissions only to the required ones; this way, even if the attackers will succeed in compromising your workflow, they won’t be able to do much.

- Included permissions for the action. https://github.com/ossf/scorecard/blob/main/docs/checks.md#token-permissions

https://docs.github.com/en/actions/using-workflows/workflow-syntax-for-github-actions#permissions

https://docs.github.com/en/actions/using-jobs/assigning-permissions-to-jobs

[Keeping your GitHub Actions and workflows secure Part 1: Preventing pwn requests](https://securitylab.github.com/research/github-actions-preventing-pwn-requests/)

Signed-off-by: naveen <172697+naveensrinivasan@users.noreply.github.com>

Pull Request resolved: https://github.com/facebook/facebook-ios-sdk/pull/2072

Reviewed By: joesus

Differential Revision: D40737684

Pulled By: jawwad

fbshipit-source-id: b0a40666855308f60714e48d49ac8ae3e4277150
2022-10-28 11:43:05 -07:00

25 lines
1.0 KiB
YAML

name: 'Close stale issues and PRs'
on:
schedule:
- cron: '30 5 * * *'
permissions:
contents: read
jobs:
stale:
permissions:
issues: write # for actions/stale to close stale issues
pull-requests: write # for actions/stale to close stale PRs
runs-on: ubuntu-latest
steps:
- uses: actions/stale@v4
with:
close-issue-message: 'Closing this issue after a prolonged period of inactivity. If this issue is still present in the latest release, please feel free to create a new issue with up-to-date information.'
stale-issue-message: 'Hey there, it looks like there has been no activity on this issue recently. Has the issue been fixed, or does it still require the community&#39;s attention? This issue may be closed if no further activity occurs. Thank you for your contributions.'
days-before-stale: 90
days-before-close: 7
enable-statistics: true
operations-per-run: 60
exempt-issue-labels: 'acknowledged,needs-triage'