Skip to content

Commit fdc7a0f

Browse files
committed
ci: use new token app for workflows
1 parent be935fc commit fdc7a0f

File tree

4 files changed

+23
-30
lines changed

4 files changed

+23
-30
lines changed

.github/workflows/automerge.yml

Lines changed: 6 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,6 @@ name: automerge
1111
permissions:
1212
contents: write
1313
pull-requests: write
14-
issues: write
1514

1615
jobs:
1716
dependabot:
@@ -21,14 +20,13 @@ jobs:
2120
steps:
2221
- name: Generate token
2322
id: token
24-
uses: tibdex/github-app-token@3beb63f4bd073e61482598c45c71c1019b59b73a # v2
23+
uses: actions/create-github-app-token@7e473efe3cb98aa54f8d4bac15400b15fad77d94 # v2
2524
with:
26-
app_id: ${{ secrets.TOKEN_EXCHANGE_APP }}
27-
installation_retrieval_mode: id
28-
installation_retrieval_payload: ${{ secrets.TOKEN_EXCHANGE_INSTALL }}
29-
private_key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
30-
permissions: >-
31-
{"contents": "write", "pull_requests": "write", "issues": "write"}
25+
app-id: ${{ secrets.TOKEN_EXCHANGE_APP }}
26+
private-key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
27+
permission-contents: write
28+
permission-pull-requests: write
29+
permission-issues: write
3230

3331
- name: Fetch metadata
3432
uses: dependabot/fetch-metadata@08eff52bf64351f401fb50d4972fa95b9f2c2d1b # v2

.github/workflows/flake.yml

Lines changed: 4 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -17,14 +17,11 @@ jobs:
1717
steps:
1818
- name: Generate token
1919
id: token
20-
uses: tibdex/github-app-token@3beb63f4bd073e61482598c45c71c1019b59b73a # v2
20+
uses: actions/create-github-app-token@7e473efe3cb98aa54f8d4bac15400b15fad77d94 # v2
2121
with:
22-
app_id: ${{ secrets.TOKEN_EXCHANGE_APP }}
23-
installation_retrieval_mode: id
24-
installation_retrieval_payload: ${{ secrets.TOKEN_EXCHANGE_INSTALL }}
25-
private_key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
26-
permissions: >-
27-
{"contents": "write"}
22+
app-id: ${{ secrets.TOKEN_EXCHANGE_APP }}
23+
private-key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
24+
permission-contents: write
2825

2926
- name: Checkout source
3027
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6

.github/workflows/release.yml

Lines changed: 6 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -18,14 +18,13 @@ jobs:
1818
steps:
1919
- name: Generate token
2020
id: token
21-
uses: tibdex/github-app-token@3beb63f4bd073e61482598c45c71c1019b59b73a # v2
21+
uses: actions/create-github-app-token@7e473efe3cb98aa54f8d4bac15400b15fad77d94 # v2
2222
with:
23-
app_id: ${{ secrets.TOKEN_EXCHANGE_APP }}
24-
installation_retrieval_mode: id
25-
installation_retrieval_payload: ${{ secrets.TOKEN_EXCHANGE_INSTALL }}
26-
private_key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
27-
permissions: >-
28-
{"contents": "write", "pull_requests": "write", "issues": "write"}
23+
app-id: ${{ secrets.TOKEN_EXCHANGE_APP }}
24+
private-key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
25+
permission-contents: write
26+
permission-pull-requests: write
27+
permission-issues: write
2928

3029
- name: Checkout source
3130
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6

.github/workflows/tools.yml

Lines changed: 7 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -18,14 +18,13 @@ jobs:
1818
steps:
1919
- name: Generate token
2020
id: token
21-
uses: tibdex/github-app-token@3beb63f4bd073e61482598c45c71c1019b59b73a # v2
21+
uses: actions/create-github-app-token@7e473efe3cb98aa54f8d4bac15400b15fad77d94 # v2
2222
with:
23-
app_id: ${{ secrets.TOKEN_EXCHANGE_APP }}
24-
installation_retrieval_mode: id
25-
installation_retrieval_payload: ${{ secrets.TOKEN_EXCHANGE_INSTALL }}
26-
private_key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
27-
permissions: >-
28-
{"contents": "write", "pull_requests": "write", "issues": "write"}
23+
app-id: ${{ secrets.TOKEN_EXCHANGE_APP }}
24+
private-key: ${{ secrets.TOKEN_EXCHANGE_KEY }}
25+
permission-contents: write
26+
permission-pull-requests: write
27+
permission-issues: write
2928

3029
- name: Checkout source
3130
uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6
@@ -80,6 +79,6 @@ jobs:
8079
if: steps.request.outputs.pull-request-operation == 'created'
8180
run: gh pr merge --rebase --auto "${{ steps.request.outputs.pull-request-number }}"
8281
env:
83-
GH_TOKEN: ${{ secrets.GITHUB_TOKEN }}
82+
GH_TOKEN: ${{ steps.token.outputs.token }}
8483

8584
...

0 commit comments

Comments
 (0)