mirror of
https://github.com/ceph/ceph-csi.git
synced 2024-12-19 11:30:24 +00:00
2672fad90a
Restrict the GitHub token permissions only to the required ones; this way, even if the attackers will succeed in compromising your workflow, they won’t be able to do much. - Included permissions for the action. https://github.com/ossf/scorecard/blob/main/docs/checks.md#token-permissions https://docs.github.com/en/actions/using-jobs/assigning-permissions-to-jobs Signed-off-by: naveen <172697+naveensrinivasan@users.noreply.github.com> naveensrinivasan <172697+naveensrinivasan@users.noreply.github.com>
47 lines
1.8 KiB
YAML
47 lines
1.8 KiB
YAML
---
|
|
# Reference https://github.com/actions/stale
|
|
name: "Mark or close stale issues and PRs"
|
|
# yamllint disable-line rule:truthy
|
|
on:
|
|
schedule:
|
|
# Run the stalebot every day at 9pm UTC
|
|
- cron: "00 21 * * *"
|
|
# yamllint disable rule:line-length
|
|
permissions:
|
|
contents: read
|
|
|
|
jobs:
|
|
stale:
|
|
permissions:
|
|
issues: write # for actions/stale to close stale issues
|
|
pull-requests: write # for actions/stale to close stale PRs
|
|
runs-on: ubuntu-18.04
|
|
if: github.repository == 'ceph/ceph-csi'
|
|
steps:
|
|
- uses: actions/stale@v5
|
|
with:
|
|
repo-token: ${{ secrets.GITHUB_TOKEN }}
|
|
days-before-issue-stale: 30
|
|
days-before-issue-close: 7
|
|
stale-issue-message: >
|
|
This issue has been automatically marked as stale because it has not had recent activity.
|
|
It will be closed in a week if no further activity occurs.
|
|
Thank you for your contributions.
|
|
close-issue-message: >
|
|
This issue has been automatically closed due to inactivity.
|
|
Please re-open if this still requires investigation.
|
|
stale-issue-label: "wontfix"
|
|
exempt-issue-labels: "keepalive,security,reliability,release requirement"
|
|
|
|
days-before-pr-stale: 30
|
|
days-before-pr-close: 14
|
|
stale-pr-message: >
|
|
This pull request has been automatically marked as stale because it has not had
|
|
recent activity. It will be closed in two weeks if no further activity occurs.
|
|
Thank you for your contributions.
|
|
close-pr-message: >
|
|
This pull request has been automatically closed due to inactivity.
|
|
Please re-open if these changes are still required.
|
|
stale-pr-label: "stale"
|
|
exempt-pr-labels: "keepalive,security,reliability,release requirement"
|