From cacedd04e3d925a43c026c8a1831a19224984163 Mon Sep 17 00:00:00 2001 From: 0x2b3bfa0 <0x2b3bfa0+git@googlemail.com> Date: Mon, 11 Sep 2023 17:37:58 +0200 Subject: [PATCH] Migrate from PyPI tokens to Trusted Publishers --- .github/workflows/release.yaml | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/.github/workflows/release.yaml b/.github/workflows/release.yaml index 3ff2842..915c72a 100644 --- a/.github/workflows/release.yaml +++ b/.github/workflows/release.yaml @@ -4,6 +4,10 @@ on: types: [published] jobs: release: + environment: pypi + permissions: + contents: read + id-token: write runs-on: ubuntu-latest steps: - uses: actions/checkout@v3 @@ -14,5 +18,3 @@ jobs: - run: pip install -U nox - run: nox -s build - uses: pypa/gh-action-pypi-publish@release/v1 - with: - password: ${{ secrets.PYPI_TOKEN }}