From a3e677fb997313cb1b19231cd8ea94a8b747cff7 Mon Sep 17 00:00:00 2001 From: Tobias Brox Date: Thu, 8 Oct 2026 01:59:15 +0200 Subject: [PATCH 1/2] ci: read-only GITHUB_TOKEN for the tests workflow The tests workflow had no permissions block, so its jobs ran with the repository's default token scope. None of its steps need write access. Clears the code-scanning missing-workflow-permissions alerts. Prompt: (...) also check if you can mitigate https://github.com/python-caldav/caldav/security/code-scanning/7 and its neighbours Followup-Prompt: [publish the CI and docs fixups as PRs] Assisted-By: Claude Opus 5.5 Reviewed-by: Tobias Brox --- .github/workflows/tests.yaml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/tests.yaml b/.github/workflows/tests.yaml index 4cd44260..c3085881 100644 --- a/.github/workflows/tests.yaml +++ b/.github/workflows/tests.yaml @@ -7,6 +7,8 @@ on: pull_request: branches: - master +permissions: + contents: read jobs: tests: name: ${{ matrix.python }} From b46685dec156c395f864af2759fc2d871a1c4a1d Mon Sep 17 00:00:00 2001 From: Tobias Brox Date: Thu, 8 Oct 2026 01:49:20 +0200 Subject: [PATCH 2/2] docs: fix typos in example and config docs Prompt: [fix review findings] Assisted-By: Claude Opus 5.5 Reviewed-by: Tobias Brox --- docs/source/configfile.rst | 2 +- examples/google-flask.py | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/docs/source/configfile.rst b/docs/source/configfile.rst index bafc0f9b..b671a644 100644 --- a/docs/source/configfile.rst +++ b/docs/source/configfile.rst @@ -78,7 +78,7 @@ config file.) The special ``features`` key (not prefixed with ``caldav_``) names a server-compatibility profile — e.g. ``xandikos``, ``radicale``, ``baikal``. See :mod:`caldav.compatibility_hints` for the full list of known profiles. -Various compatibility workarounds may be turned off or on dependent on +Various compatibility workarounds may be turned on or off depending on the configured features. Environment variable expansion diff --git a/examples/google-flask.py b/examples/google-flask.py index 24ef0771..9bd0024e 100644 --- a/examples/google-flask.py +++ b/examples/google-flask.py @@ -2,10 +2,10 @@ """Code contributed by github user seidnerj in https://github.com/python-caldav/caldav/issues/119#issuecomment-2561980368 -This code has not been tested nor revieed by the maintainer of the +This code has been neither tested nor reviewed by the maintainer of the caldav library. It's also quite old code - most of this example is probably obsolete and seems to be far away from what is "best current -practice" in the maintainers perspective as of 2026. +practice" in the maintainer's perspective as of 2026. """