From 2404c838c394f0db122f5c0ad6928a5b6a062b64 Mon Sep 17 00:00:00 2001 From: Kenneth Date: Sat, 14 Mar 2026 01:23:05 +0000 Subject: [PATCH] Add top-level OIDC permissions to publish workflow Co-authored-by: Ona --- .github/workflows/publish.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/.github/workflows/publish.yml b/.github/workflows/publish.yml index 7e58d19..240e662 100644 --- a/.github/workflows/publish.yml +++ b/.github/workflows/publish.yml @@ -4,6 +4,10 @@ on: release: types: [published] +permissions: + id-token: write # Required for OIDC + contents: read + jobs: publish: runs-on: ubuntu-latest