readme: add action permission settings #7
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
When creating a new repo from the template, you must also edit the GitHub Actions workflow permission settings or the workflow job will run into 403 permission errors.
For example, this run (https://github.com/MattSturgeon/test-update-flake-lock/actions/runs/17505282300) has three attempts; during the first the repo settings were left as default, during the second I enabled "allow creating PRs", during the third I also selected "allow write". The third was the only one that didn't 403.
Aside: this should probably also be documented on the main action's README, if it isn't already. It wouldn't apply to anyone using a PAT or a GH App, of course, so that may be worth caveating.
Summary by CodeRabbit