summaryrefslogtreecommitdiff
path: root/.github
diff options
context:
space:
mode:
authorDavid Lord <davidism@gmail.com>2023-04-20 10:00:40 -0700
committerDavid Lord <davidism@gmail.com>2023-04-20 10:00:40 -0700
commite157da57f5119ad94adafb1fdb0efdf449482180 (patch)
treea61b154413c4b6ca58aba6a09da88e2b99127875 /.github
parent9879b4ed6f145f072f6d10d5fde8c17ff0d42cb7 (diff)
downloadwerkzeug-e157da57f5119ad94adafb1fdb0efdf449482180.tar.gz
use oidc instead of token
Diffstat (limited to '.github')
-rw-r--r--.github/workflows/publish.yaml4
1 files changed, 2 insertions, 2 deletions
diff --git a/.github/workflows/publish.yaml b/.github/workflows/publish.yaml
index ca69e356..45a9c51b 100644
--- a/.github/workflows/publish.yaml
+++ b/.github/workflows/publish.yaml
@@ -58,15 +58,15 @@ jobs:
# files in the draft release.
environment: 'publish'
runs-on: ubuntu-latest
+ permissions:
+ id-token: write
steps:
- uses: actions/download-artifact@9bc31d5ccc31df68ecc42ccf4149144866c47d8a
# Try uploading to Test PyPI first, in case something fails.
- uses: pypa/gh-action-pypi-publish@29930c9cf57955dc1b98162d0d8bc3ec80d9e75c
with:
- password: ${{ secrets.TEST_PYPI_TOKEN }}
repository_url: https://test.pypi.org/legacy/
packages_dir: artifact/
- uses: pypa/gh-action-pypi-publish@29930c9cf57955dc1b98162d0d8bc3ec80d9e75c
with:
- password: ${{ secrets.PYPI_TOKEN }}
packages_dir: artifact/