Skip to content

Conversation

@abacchilb
Copy link
Contributor

Based on security best practice - I split up the build and publish process so that the id-token: write is available in the minimum amount of steps.
Also added environment so the publish to pypi portion so we can add further security later. Removed twine install because it was no longer needed.

@abacchilb abacchilb requested a review from a team as a code owner February 22, 2024 17:38
@abacchilb
Copy link
Contributor Author

@vbrodsky would need to update the pypi environment with 'publish'
image

@abacchilb abacchilb merged commit a917f89 into develop Feb 22, 2024
@abacchilb abacchilb deleted the DEVOPS-2168 branch February 22, 2024 21:55
@abacchilb
Copy link
Contributor Author

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants