Skip to content

v1.6.3 - OIDC with Provenance

Choose a tag to compare

@GarthDB GarthDB released this 23 Jan 22:10
· 2 commits to main since this release
1b872b2

Fixed

  • ✅ Configure npm provenance for OIDC authentication
  • ✅ Fixes npm ENEEDAUTH error when using OIDC

Changes

  • When oidcAuth: true, the action now creates ~/.npmrc with provenance=true
  • This ensures npm uses OIDC authentication when changeset publish calls npm publish

Usage

- uses: GarthDB/changesets-action@v1.6.3
  with:
    publish: pnpm release  # or yarn release
    oidcAuth: true  # Enable OIDC authentication
  env:
    GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}

What's Included

  • OIDC trusted publishing support
  • Improved test coverage (30 tests passing)
  • npm provenance configuration
  • Extracted authentication functions

See README for full OIDC setup instructions.