From 63161fa6980cc0e8b8aeb786114ae2bf046897b7 Mon Sep 17 00:00:00 2001 From: Damian Kluba <58699816+dkluba@users.noreply.github.com> Date: Tue, 27 Feb 2024 09:59:17 +0100 Subject: [PATCH] Add permissions for fetching JWT token As required by https://docs.github.com/en/actions/deployment/security-hardening-your-deployments/configuring-openid-connect-in-amazon-web-services#adding-permissions-settings --- .github/workflows/cd.yml | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/.github/workflows/cd.yml b/.github/workflows/cd.yml index e9b58a2..29ed382 100644 --- a/.github/workflows/cd.yml +++ b/.github/workflows/cd.yml @@ -7,8 +7,10 @@ on: jobs: publish: + permissions: + id-token: write + contents: read runs-on: ubuntu-latest - steps: - uses: actions/checkout@v2 with: