From d31e3c5f9ee4f30a183f40607576c6dd74d83541 Mon Sep 17 00:00:00 2001 From: Tim Jenness Date: Fri, 24 Jan 2025 13:41:32 -0700 Subject: [PATCH] Add configuration to allow trusted PyPI publishing --- .github/workflows/build.yaml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/build.yaml b/.github/workflows/build.yaml index 166c3fd1..debefd07 100644 --- a/.github/workflows/build.yaml +++ b/.github/workflows/build.yaml @@ -76,6 +76,8 @@ jobs: pypi: runs-on: ubuntu-latest needs: [build_and_test] + permissions: + id-token: write if: startsWith(github.ref, 'refs/tags/') steps: