diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index ea28b8f..667b8f2 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -33,6 +33,10 @@ jobs: release: runs-on: ubuntu-latest + environment: release + permissions: + # IMPORTANT: this permission is mandatory for trusted publishing to pypi + id-token: write needs: release-please if: ${{ needs.release-please.outputs.release_created }} container: @@ -76,5 +80,3 @@ jobs: - name: Publish a Python distribution to PyPI uses: pypa/gh-action-pypi-publish@release/v1 - with: - password: ${{ secrets.PYPI_API_TOKEN }}