diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 4b817ff..2201809 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -12,6 +12,10 @@ jobs: environment: main name: 'Terraform' runs-on: ubuntu-latest + # These permissions are needed to interact with GitHub's OIDC Token endpoint. + permissions: + id-token: write + contents: read steps: - name: Configure AWS Credentials uses: aws-actions/configure-aws-credentials@v1 diff --git a/.github/workflows/pr.yml b/.github/workflows/pr.yml index d1358a2..8c70479 100644 --- a/.github/workflows/pr.yml +++ b/.github/workflows/pr.yml @@ -12,6 +12,10 @@ jobs: environment: main name: 'Terraform' runs-on: ubuntu-latest + # These permissions are needed to interact with GitHub's OIDC Token endpoint. + permissions: + id-token: write + contents: read steps: - name: Configure AWS Credentials uses: aws-actions/configure-aws-credentials@v1