---
title: "Set GitHub Actions permissions for an organization"
method: PUT
path: "/orgs/{org}/actions/permissions"
tags: ["actions"]
---

# Set GitHub Actions permissions for an organization

`PUT /orgs/{org}/actions/permissions`

Sets the GitHub Actions permissions policy for repositories and allowed actions in an organization.

If the organization belongs to an enterprise that has set restrictive permissions at the enterprise level, such as `allowed_actions` to `selected` actions, then you cannot override them for the organization.

OAuth app tokens and personal access tokens (classic) need the `admin:org` scope to use this endpoint.

## Path parameters

- `org` string, required

## Request body

- object
  - `enabled_repositories` 'all' | 'none' | 'selected', required — The policy that controls the repositories in the organization that are allowed to run GitHub Actions.
  - `allowed_actions` 'all' | 'local_only' | 'selected' — The permissions policy that controls the actions and reusable workflows that are allowed to run.
  - `sha_pinning_required` boolean — Whether actions must be pinned to a full-length commit SHA.

## Response `204`

Response

---

[API](https://skmtc.net/github/apis/github-v3-rest-api-2.md) · [All operations](https://skmtc.net/github/apis/github-v3-rest-api-2/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/github/github-v3-rest-api-2/versions/8ae6d0c8716e/schema)
