Skip to content

Commit 0b46019

Browse files
committed
feat: attempt to use trusted publishers
1 parent c858036 commit 0b46019

1 file changed

Lines changed: 4 additions & 3 deletions

File tree

.github/workflows/build_and_publish_release_please.yml

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -10,8 +10,6 @@ env:
1010
PIP_DEFAULT_TIMEOUT: 60
1111
PIP_RETRIES: 5
1212

13-
DATABASE_HOST: localhost
14-
1513
# required otherwise github api calls are rate limited
1614
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
1715

@@ -20,12 +18,15 @@ jobs:
2018
runs-on: ubuntu-latest
2119
needs: [release-please]
2220
if: needs.release-please.outputs.release_created
21+
permissions:
22+
id-token: write
23+
contents: read
2324
steps:
2425
- uses: actions/checkout@v5
2526
- uses: jdx/mise-action@v3
2627
- uses: iloveitaly/github-action-direnv-load-and-mask@master
2728
- run: uv build
28-
- run: uv publish --token ${{ secrets.PYPI_API_TOKEN }}
29+
- run: uv publish
2930

3031
release-please:
3132
runs-on: ubuntu-latest

0 commit comments

Comments
 (0)