diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index 0edc200..a9a25e9 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -6,7 +6,12 @@ on: jobs: publish: + name: Upload release to PyPI runs-on: ubuntu-latest + environment: release + permissions: + # IMPORTANT: this permission is mandatory for trusted publishing + id-token: write steps: - uses: actions/checkout@v2 @@ -23,5 +28,3 @@ jobs: python setup.py sdist bdist_wheel - name: Publish distribution to PyPI uses: pypa/gh-action-pypi-publish@release/v1 - with: - password: ${{ secrets.PYPI_ORG_TOKEN }}