diff --git a/.github/workflows/publish.yml b/.github/workflows/publish.yml index 2aca751..ff677a6 100644 --- a/.github/workflows/publish.yml +++ b/.github/workflows/publish.yml @@ -6,6 +6,9 @@ jobs: build-n-publish: name: Build and publish Python 🐍 distributions 📦 to PyPI and TestPyPI runs-on: ubuntu-24.04 + environment: pypi + permissions: + id-token: write steps: - uses: actions/checkout@v4 @@ -34,11 +37,8 @@ jobs: - name: Publish distribution 📦 to Test PyPI uses: pypa/gh-action-pypi-publish@v1.13.0 with: - password: ${{ secrets.TEST_PYPI_API_TOKEN }} repository-url: https://test.pypi.org/legacy/ - name: Publish distribution 📦 to PyPI if: startsWith(github.ref, 'refs/tags') uses: pypa/gh-action-pypi-publish@v1.13.0 - with: - password: ${{ secrets.PYPI_API_TOKEN }}