Skip to content

Commit dbd23e3

Browse files
committed
🐛 configure jobs permissions
1 parent c16600d commit dbd23e3

File tree

1 file changed

+5
-3
lines changed

1 file changed

+5
-3
lines changed

.github/workflows/build.yaml

Lines changed: 5 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -6,8 +6,10 @@ jobs:
66
build:
77
runs-on: ubuntu-latest
88
permissions:
9-
contents: read
10-
id-token: write
9+
contents: write # to be able to publish a GitHub release
10+
issues: write # to be able to comment on released issues
11+
pull-requests: write # to be able to comment on released pull requests
12+
id-token: write # to enable use of OIDC for npm provenance
1113
steps:
1214
- uses: actions/checkout@v4
1315
- uses: actions/setup-node@v4
@@ -19,7 +21,7 @@ jobs:
1921
- run: npm run build # or any other step to build your package
2022
- name: run semantic-release
2123
env:
22-
GITHUB_TOKEN: ${{ secrets.GH_TOKEN }}
24+
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
2325
NODE_AUTH_TOKEN: ${{ secrets.NPM_TOKEN }}
2426
run: npm run semantic-release
2527

0 commit comments

Comments
 (0)