From fe36eeaf5fc344e202efcda4191e73c6a89c78d8 Mon Sep 17 00:00:00 2001 From: Sebastien Vermeille Date: Tue, 4 Jun 2024 14:11:52 +0200 Subject: [PATCH] BUILD-5219 Use Hashicorp Vault to retrieve OPENVSX_TOKEN That way it retrieves an up-to-date secret --- .github/workflows/release.yml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index 0c51cfb17..3fea32938 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -117,6 +117,7 @@ jobs: with: secrets: | development/artifactory/token/{REPO_OWNER_NAME_DASH}-private-reader access_token | ARTIFACTORY_ACCESS_TOKEN; + development/team/sonarlint/kv/data/open_vsx token | OPENVSX_TOKEN; - name: Install dependencies for ovsx-publish run: | cp ${GITHUB_WORKSPACE}/.cirrus/.npmrc ./.npmrc @@ -155,5 +156,5 @@ jobs: id: ovsx_publish env: ARTIFACT_FILE: ${{ steps.download_artifact.outputs.artifactFile }} - OPENVSX_TOKEN: ${{ secrets.OPENVSX_TOKEN }} + OPENVSX_TOKEN: ${{ fromJSON(steps.secrets.outputs.vault).OPENVSX_TOKEN }} uses: ./.github/actions/ovsx-publish