From 335a84bb59377371ecb2e6dc9702ce572d2e6cc6 Mon Sep 17 00:00:00 2001 From: Mohamed Bassem Date: Sat, 29 Nov 2025 13:08:04 +0000 Subject: build: switch npm to trusted publishing --- .github/workflows/sdk.yml | 8 +++++--- 1 file changed, 5 insertions(+), 3 deletions(-) (limited to '.github/workflows/sdk.yml') diff --git a/.github/workflows/sdk.yml b/.github/workflows/sdk.yml index d14057c8..678d7570 100644 --- a/.github/workflows/sdk.yml +++ b/.github/workflows/sdk.yml @@ -4,6 +4,11 @@ on: tags: # This is a glob pattern not a regex - 'sdk/v[0-9]+.[0-9]+.[0-9]+' + +permissions: + id-token: write # Required for OIDC + contents: read + jobs: build: runs-on: ubuntu-latest @@ -19,6 +24,3 @@ jobs: - run: pnpm publish --access public --no-git-checks working-directory: packages/sdk - env: - NODE_AUTH_TOKEN: ${{ secrets.NPM_ACCESS_TOKEN }} - -- cgit v1.2.3-70-g09d2