From 829ec7125a8585af8ec98188ae61f1da1c379cb1 Mon Sep 17 00:00:00 2001 From: Adam Turner <9087854+aa-turner@users.noreply.github.com> Date: Thu, 19 Sep 2024 00:17:48 +0100 Subject: [PATCH] Restrict the release workflow to the @sphinx-doc organisation --- .github/workflows/create-release.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/create-release.yml b/.github/workflows/create-release.yml index 55c4972..9672e60 100644 --- a/.github/workflows/create-release.yml +++ b/.github/workflows/create-release.yml @@ -14,6 +14,7 @@ jobs: runs-on: ubuntu-latest name: PyPI Release environment: release + if: github.repository_owner == 'sphinx-doc' permissions: id-token: write # for PyPI trusted publishing steps: @@ -70,6 +71,7 @@ jobs: runs-on: ubuntu-latest name: GitHub release environment: release + if: github.repository_owner == 'sphinx-doc' permissions: contents: write # for softprops/action-gh-release to create GitHub release steps: