Skip to content

Add ci-tools/github-app-token to the Pantheon deploy job - #290

Draft
sean-e-dietrich wants to merge 1 commit into
mainfrom
feature/github-app-token
Draft

sean-e-dietrich wants to merge 1 commit into
mainfrom
feature/github-app-token

Conversation

@sean-e-dietrich

Copy link
Copy Markdown
Contributor

Adds the ci-tools/github-app-token step immediately after ci-tools/copy-ssh-key in the Pantheon deploy job.

The step exchanges the GitHub App ID and private key for a short-lived installation access token and exports it as GITHUB_TOKEN/GH_TOKEN for every step that follows. When the App credentials are not present, or the exchange fails, the existing GITHUB_TOKEN is left untouched, so nothing breaks.

Blocked on the orb release. ci-tools/github-app-token is not published yet. This PR stays in draft until the new kanopi/ci-tools@2 version ships; merging it before then will fail config validation.

  • Was AI used in this pull request?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant