The GitHub Actions job "Build and push docker images" on ofbiz-framework.git 
has failed.
Run started by GitHub user JacquesLeRoux (triggered by JacquesLeRoux).

Head commit for run:
7806dabd659040b8317c2e009ec65d46eeb98fcb / StepSecurity Bot 
<b...@stepsecurity.io>
[StepSecurity] ci: Harden GitHub Actions (#719)

Security Fixes
Least Privileged GitHub Actions Token Permissions
The GITHUB_TOKEN is an automatically generated secret to make authenticated 
calls to the GitHub API. GitHub recommends setting minimum token permissions 
for the GITHUB_TOKEN.

GitHub Security Guide
The Open Source Security Foundation (OpenSSF) Security Guide
Feedback
For bug reports, feature requests, and general feedback; please email 
supp...@stepsecurity.io. To create such PRs, please visit 
https://app.stepsecurity.io/securerepo.

Signed-off-by: StepSecurity Bot b...@stepsecurity.io at the request of 
@JacquesLeRoux

Report URL: https://github.com/apache/ofbiz-framework/actions/runs/8128818251

With regards,
GitHub Actions via GitBox

Reply via email to