From 4a5415e11a571cc62152ed66400d29e75d37cbf0 Mon Sep 17 00:00:00 2001 From: Enrico Ubaldi Date: Thu, 30 Nov 2023 12:20:59 +0100 Subject: [PATCH] Update publish_pypi.yml Fixed the action to use trusted publishers pipeline. --- .github/workflows/publish_pypi.yml | 7 +++---- 1 file changed, 3 insertions(+), 4 deletions(-) diff --git a/.github/workflows/publish_pypi.yml b/.github/workflows/publish_pypi.yml index bdaab28..52a6ec4 100644 --- a/.github/workflows/publish_pypi.yml +++ b/.github/workflows/publish_pypi.yml @@ -19,6 +19,8 @@ jobs: deploy: runs-on: ubuntu-latest + permissions: + id-token: write steps: - uses: actions/checkout@v3 @@ -33,7 +35,4 @@ jobs: - name: Build package run: python -m build - name: Publish package - uses: pypa/gh-action-pypi-publish@27b31702a0e7fc50959f5ad993c78deac1bdfc29 - with: - user: __token__ - password: ${{ secrets.PYPI_API_TOKEN }} + uses: pypa/gh-action-pypi-publish@release/v1