Skip to content

Conversation

@v1v
Copy link
Member

@v1v v1v commented Sep 9, 2024

Details

⚠️ This PR was created by an automated tool. Please review the changes carefully. ⚠️

What

Use https://github.com/tibdex/github-app-token to generate ephemeral tokens with the required
permissions only

This is the alternative to moving away from finer-grained GitHub tokens and reducing the
cumbersome of rotating them as we do nowadays.

Implementaiton details

We have used the same GitHub action in other places.

If there are any questions, please reach out to the @elastic/observablt-ci

@v1v v1v requested a review from a team as a code owner September 9, 2024 12:21
@v1v v1v self-assigned this Sep 9, 2024
@v1v v1v requested a review from a team September 9, 2024 12:21
@mergify
Copy link
Contributor

mergify bot commented Sep 9, 2024

This pull request does not have a backport label. Could you fix it @v1v? 🙏
To fixup this pull request, you need to add the backport labels for the needed
branches, such as:

  • backport-7.17 is the label to automatically backport to the 7.17 branch.
  • backport-8./d is the label to automatically backport to the 8./d branch. /d is the digit.

NOTE: backport-skip has been added to this pull request.

@mergify mergify bot added the backport-skip Skip notification from the automated backport with mergify label Sep 9, 2024
@v1v v1v added backport-7.17 Automated backport with mergify to the 7.17 branch backport-8.15 Automated backport with mergify and removed backport-skip Skip notification from the automated backport with mergify labels Sep 9, 2024
@v1v v1v marked this pull request as draft September 9, 2024 13:18
@v1v
Copy link
Member Author

v1v commented Sep 9, 2024

CLA checker will cause some disruptions - I'm working on it with the relevant CLA owners. for now, I'll keep this draft to avoid surprises.

@v1v v1v added the backport-8.x Automated backport to the 8.x branch with mergify label Sep 10, 2024
@v1v v1v marked this pull request as ready for review September 16, 2024 10:12
@v1v v1v enabled auto-merge (squash) September 17, 2024 11:04
@v1v v1v merged commit abb9a9b into main Sep 17, 2024
@v1v v1v deleted the gh-oblt/replace-token-with-app branch September 17, 2024 11:12
mergify bot pushed a commit that referenced this pull request Sep 17, 2024
…4010)

(cherry picked from commit abb9a9b)

# Conflicts:
#	.github/workflows/update-compose.yml
mergify bot pushed a commit that referenced this pull request Sep 17, 2024
…4010)

(cherry picked from commit abb9a9b)

# Conflicts:
#	.github/workflows/bump-golang.yml
#	.github/workflows/update-compose.yml
mergify bot pushed a commit that referenced this pull request Sep 17, 2024
mergify bot added a commit that referenced this pull request Sep 17, 2024
…ons (backport #14010) (#14103)

* github-action: use ephemeral tokens with the required permissions (#14010)

(cherry picked from commit abb9a9b)

# Conflicts:
#	.github/workflows/bump-golang.yml
#	.github/workflows/update-compose.yml

* Apply suggestions from code review

---------

Co-authored-by: Victor Martinez <[email protected]>
mergify bot added a commit that referenced this pull request Sep 17, 2024
…ons (backport #14010) (#14102)

* github-action: use ephemeral tokens with the required permissions (#14010)

(cherry picked from commit abb9a9b)

# Conflicts:
#	.github/workflows/update-compose.yml

* Apply suggestions from code review

---------

Co-authored-by: Victor Martinez <[email protected]>
mergify bot added a commit that referenced this pull request Sep 17, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport-7.17 Automated backport with mergify to the 7.17 branch backport-8.x Automated backport to the 8.x branch with mergify backport-8.15 Automated backport with mergify

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants