From ac57e084a057df5a67f5de044c64b27bb193c69a Mon Sep 17 00:00:00 2001 From: mohamedlajmileanix Date: Tue, 12 Nov 2024 12:55:24 +0100 Subject: [PATCH] CID-3008: grant write to action to create tag --- .github/workflows/publish-package-to-ghcr.yml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/.github/workflows/publish-package-to-ghcr.yml b/.github/workflows/publish-package-to-ghcr.yml index e9e7f85..3d98c1d 100644 --- a/.github/workflows/publish-package-to-ghcr.yml +++ b/.github/workflows/publish-package-to-ghcr.yml @@ -24,7 +24,7 @@ jobs: runs-on: ubuntu-latest permissions: - contents: read + contents: write packages: write attestations: write id-token: write @@ -47,7 +47,7 @@ jobs: uses: actions/github-script@v6.4.1 if: (steps.tag-action.outputs.tag != '') with: - github-token: ${{secrets.GITHUB_TOKEN}} + github-token: ${{ secrets.GITHUB_TOKEN }} script: | const tag = "${{ steps.tag-action.outputs.tag }}"; const { data: releases } = await github.rest.repos.listReleases({ @@ -65,7 +65,7 @@ jobs: release_id: draftRelease.id, draft: false }); - console.log(`Published draft release for tag ${tag}`); + console.log(`Published draft release for tag ${tag}`); - name: Checkout uses: actions/checkout@v3