Skip to content

Commit 69adcc7

Browse files
s
1 parent dadf329 commit 69adcc7

File tree

2 files changed

+4
-3
lines changed

2 files changed

+4
-3
lines changed

.github/workflows/_gcp-deploy.yml

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -14,9 +14,6 @@ jobs:
1414
environment: ${{ inputs.environment }}
1515
permissions:
1616
contents: 'read'
17-
# Requird for OIDC auth with GCP.
18-
# @see: https://docs.github.com/en/actions/security-for-github-actions/security-hardening-your-deployments/about-security-hardening-with-openid-connect#adding-permissions-settings
19-
id-token: 'write'
2017
env:
2118
IMAGE_PATH: us-west1-docker.pkg.dev/${{ secrets.GCP_PROJECT_ID }}/sourcebot/sourcebot-${{ vars.NEXT_PUBLIC_SOURCEBOT_CLOUD_ENVIRONMENT }}
2219
steps:

.github/workflows/scratch-workflow.yml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -8,5 +8,9 @@ on:
88
jobs:
99
scratch:
1010
uses: ./.github/workflows/_gcp-deploy.yml
11+
permissions:
12+
# Requird for OIDC auth with GCP.
13+
# @see: https://docs.github.com/en/actions/security-for-github-actions/security-hardening-your-deployments/about-security-hardening-with-openid-connect#adding-permissions-settings
14+
id-token: 'write'
1115
with:
1216
environment: staging

0 commit comments

Comments
 (0)