Skip to content

Commit b0bbf6c

Browse files
Remove npm token from workflow and Apply OIDC to publish packages (#647)
1 parent f4a2fb5 commit b0bbf6c

File tree

18 files changed

+38
-17
lines changed

18 files changed

+38
-17
lines changed

.changeset/gold-ideas-burn.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
1+
---
2+
---

.github/workflows/release.yml

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -12,6 +12,10 @@ jobs:
1212
release:
1313
name: Create PR or release packages
1414
runs-on: ubuntu-latest
15+
permissions:
16+
id-token: write
17+
contents: write
18+
pull-requests: write
1519
steps:
1620
- uses: actions/checkout@v4
1721
with:
@@ -69,7 +73,6 @@ jobs:
6973
publish: yarn changeset publish
7074
version: yarn changeset:version
7175
env:
72-
NODE_AUTH_TOKEN: ${{ secrets.NPM_PUBLISH_TOKEN }}
7376
GITHUB_TOKEN: ${{ secrets.DAANGNBOT_PAT }}
7477

7578
- name: Continuous release via pkg.pr.new

config/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,8 @@
3838
"ultra-runner": "^3.10.5"
3939
},
4040
"publishConfig": {
41-
"access": "public"
41+
"access": "public",
42+
"provenance": true
4243
},
4344
"ultra": {
4445
"concurrent": [

core/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,8 @@
5656
"ultra-runner": "^3.10.5"
5757
},
5858
"publishConfig": {
59-
"access": "public"
59+
"access": "public",
60+
"provenance": true
6061
},
6162
"ultra": {
6263
"concurrent": [

extensions/compat-await-push/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -47,7 +47,8 @@
4747
"react": ">=16.8.0"
4848
},
4949
"publishConfig": {
50-
"access": "public"
50+
"access": "public",
51+
"provenance": true
5152
},
5253
"ultra": {
5354
"concurrent": [

extensions/link/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -63,7 +63,8 @@
6363
"react": ">=16.8.0"
6464
},
6565
"publishConfig": {
66-
"access": "public"
66+
"access": "public",
67+
"provenance": true
6768
},
6869
"ultra": {
6970
"concurrent": [

extensions/plugin-basic-ui/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,8 @@
5656
"react": ">=16.8.0"
5757
},
5858
"publishConfig": {
59-
"access": "public"
59+
"access": "public",
60+
"provenance": true
6061
},
6162
"ultra": {
6263
"concurrent": [

extensions/plugin-devtools/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,8 @@
4141
"@stackflow/core": "^1.1.0-canary.0"
4242
},
4343
"publishConfig": {
44-
"access": "public"
44+
"access": "public",
45+
"provenance": true
4546
},
4647
"ultra": {
4748
"concurrent": [

extensions/plugin-google-analytics-4/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,8 @@
5151
"react": ">=16.8.0"
5252
},
5353
"publishConfig": {
54-
"access": "public"
54+
"access": "public",
55+
"provenance": true
5556
},
5657
"ultra": {
5758
"concurrent": [

extensions/plugin-history-sync/package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -88,7 +88,8 @@
8888
"eagerEsModules": true
8989
},
9090
"publishConfig": {
91-
"access": "public"
91+
"access": "public",
92+
"provenance": true
9293
},
9394
"ultra": {
9495
"concurrent": [

0 commit comments

Comments
 (0)