From f6e77b845bd91fb9c8a6cf7aeaa134d234c6dc4b Mon Sep 17 00:00:00 2001 From: Elliot DeNolf Date: Fri, 10 May 2024 09:08:16 -0400 Subject: [PATCH] ci: add npm provenance to canary releases --- .github/workflows/release-canary.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/release-canary.yml b/.github/workflows/release-canary.yml index 982fb90f32..2a7481eb25 100644 --- a/.github/workflows/release-canary.yml +++ b/.github/workflows/release-canary.yml @@ -13,6 +13,8 @@ env: jobs: release: + permissions: + id-token: write runs-on: ubuntu-latest steps: - name: Checkout @@ -31,3 +33,4 @@ jobs: run: pnpm tsx ./scripts/publish-canary.ts env: NPM_TOKEN: ${{ secrets.NPM_TOKEN }} + NPM_CONFIG_PROVENANCE: true