Skip to content

Switch to OIDC for npm publish tokens #6422

@BYK

Description

@BYK

Due to recent supply-chain attacks, legacy NPM tokens are getting retired early November. We rely on the legacy automation tokens which will get affected (removed).

The next logical step seems like adopting OIDC for this too.

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions