- uv or devcontainer
Create a PAT GitHub token with permissions for all repositories or some specific repositories with the following permissions:
- repo
- workflow
- read:user
To prevents accidental deletion of Github repository, this ressource is marked as protected and require a manual deletion. PAT Github token is required for https://docs.github.com/en/rest/apps/installations?apiVersion=2022-11-28#add-a-repository-to-an-app-installation.
export GITHUB_TOKEN=xxxx
export PULUMI_CONFIG_PASSPHRASE=xxxx
export AWS_ACCESS_KEY_ID=xxxx
export AWS_SECRET_ACCESS_KEY=xxxx
export AWS_CA_BUNDLE=/etc/ssl/certs/ca-certificates.crt
pulumi login 's3://pulumi?region=eu-west-1&endpoint=https://nas.unicornafk.fr:30292&s3ForcePathStyle=true'
pulumi stack select prod
pulumi refresh
pulumi uppulumi stack init <name>pulumi import github:index/repository:Repository <repository_name> <repository_name> --parent urn:pulumi:prod::.github::pkg:index:GitRepositoryComponent::<repository_name>pulumi stack -u
pulumi state delete 'urn:XXXXXXXX'It's currently not possible to set some repository settings
In Advanced Security:
Dependabot > Dependabot alertsmust be enabled (Github issue)
In settings:
Releases > Enable release immutability Loadingmust be checked (Github issue)
In settings > actions:
Approval for running fork pull request workflows from contributorsmust be set toRequire approval for all external contributors