From 6a56f3fd927e6e0fc5a4a8986c85ac29b22f79cf Mon Sep 17 00:00:00 2001 From: Sam Simpson Date: Thu, 1 Feb 2024 15:00:02 +0000 Subject: [PATCH] Give deploy workflow id-token permission --- .github/workflows/deploy.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/deploy.yml b/.github/workflows/deploy.yml index 2e3d4066..923d8055 100644 --- a/.github/workflows/deploy.yml +++ b/.github/workflows/deploy.yml @@ -31,6 +31,8 @@ jobs: secrets: AWS_ACCESS_KEY_ID: ${{ secrets.AWS_GOVUK_ECR_ACCESS_KEY_ID }} AWS_SECRET_ACCESS_KEY: ${{ secrets.AWS_GOVUK_ECR_SECRET_ACCESS_KEY }} + permissions: + id-token: write trigger-deploy: name: Trigger deploy to ${{ inputs.environment || 'integration' }} needs: build-and-publish-image