Set default workflow permissions for an organization
PUT
/orgs/{org}/actions/permissions/workflow
Sets the default workflow permissions granted to the GITHUB_TOKEN when running workflows in an organization, and sets if GitHub Actions
can submit approving pull request reviews. For more information, see
“Setting the permissions of the GITHUB_TOKEN for your organization.”
OAuth app tokens and personal access tokens (classic) need the admin:org scope to use this endpoint.
Parameters
Section titled “Parameters”Path Parameters
Section titled “Path Parameters”org
required
string
The organization name. The name is not case sensitive.
Request Body
Section titled “Request Body”Media typeapplication/json
object
default_workflow_permissions
The default workflow permissions granted to the GITHUB_TOKEN when running workflows.
string
can_approve_pull_request_reviews
Whether GitHub Actions can approve pull requests. Enabling this can be a security risk.
boolean
Examples
Exampledefault
Give read-only permission, and allow approving PRs.
{ "default_workflow_permissions": "read", "can_approve_pull_request_reviews": true}Responses
Section titled “Responses”Success response