From 1e5ae8756edac34f31b7bb1aefab8becfc8f761f Mon Sep 17 00:00:00 2001 From: muzuke <92723634+muzuke@users.noreply.github.com> Date: Thu, 8 Feb 2024 11:24:14 +0200 Subject: [PATCH] Add contents: write permissions for release artifact --- .github/workflows/artifacts.yml | 6 +----- 1 file changed, 1 insertion(+), 5 deletions(-) diff --git a/.github/workflows/artifacts.yml b/.github/workflows/artifacts.yml index bcad30a..2c1b11d 100644 --- a/.github/workflows/artifacts.yml +++ b/.github/workflows/artifacts.yml @@ -13,7 +13,7 @@ permissions: id-token: write pull-requests: write packages: write - contents: read + contents: write jobs: @@ -94,10 +94,8 @@ jobs: with: role_name: ${{ secrets.AWS_ROLE_NAME_SNYK_SECRET }} app_name: 'babylon-nginx' - step_name: 'snyk-container-monitor' dockerhub_secret_name: ${{ secrets.AWS_SECRET_NAME_DOCKERHUB }} snyk_secret_name: ${{ secrets.AWS_SECRET_NAME_SNYK }} - parse_json: true snyk_org_id: ${{ secrets.SNYK_DEVOPS_ORG_ID }} image: docker.io/radixdlt/private-babylon-nginx:${{ needs.build-push-container-private.outputs.default_tag }} target_ref: ${{ github.ref_name }} @@ -116,10 +114,8 @@ jobs: with: role_name: ${{ secrets.AWS_ROLE_NAME_SNYK_SECRET }} app_name: 'babylon-nginx' - step_name: 'snyk-container-monitor' dockerhub_secret_name: ${{ secrets.AWS_SECRET_NAME_DOCKERHUB }} snyk_secret_name: ${{ secrets.AWS_SECRET_NAME_SNYK }} - parse_json: true snyk_org_id: ${{ secrets.SNYK_NETWORK_ORG_ID }} image: docker.io/radixdlt/private-babylon-nginx:${{ needs.build-push-container-private.outputs.default_tag }} target_ref: ${{ github.ref_name }}