Jelajahi Sumber

Merge branch 'fix/danger-github-action-bot' into 'master'

ci(danger-github): Fix github-action-bot permissions for posting Danger output

Closes RDT-531

See merge request espressif/esp-idf!25544
Tomas Sebestik 2 tahun lalu
induk
melakukan
5f994f0698
1 mengubah file dengan 6 tambahan dan 11 penghapusan
  1. 6 11
      .github/workflows/dangerjs.yml

+ 6 - 11
.github/workflows/dangerjs.yml

@@ -1,20 +1,12 @@
 name: DangerJS Pull Request review
 
 on:
-  pull_request:
+  pull_request_target:
     types: [opened, edited, reopened, synchronize]
-    branches:
-      - '*'
-  workflow_dispatch:
 
 permissions:
-  actions: read
-  checks: read
-  contents: read
-  issues: write
   pull-requests: write
-  security-events: read
-  statuses: write
+  contents: write
 
 jobs:
   danger-check:
@@ -23,7 +15,10 @@ jobs:
       run:
         working-directory: .github/dangerjs
     steps:
-    - uses: actions/checkout@v3
+    - name: Check out PR head
+      uses: actions/checkout@v3
+      with:
+        ref: ${{ github.event.pull_request.head.sha }}
 
     - name: Setup NodeJS environment
       uses: actions/setup-node@v3