Skip to content

Conversation

@Kyle-Neale
Copy link
Contributor

What does this PR do?

Integrates dd-octo-sts to obtain GitHub tokens with workflows permission, enabling fully automated Python version upgrades including modifications to workflow files.

Motivation

  • Added trust policy .github/chainguard/upgrade-python-version.sts.yaml with workflows: write permission
  • Updated .github/workflows/upgrade-python-version.yml to use DataDog/dd-octo-sts-action instead of actions/create-github-app-token

Review checklist (to be filled by reviewers)

  • Feature or bugfix MUST have appropriate tests (unit, integration, e2e)
  • Add the qa/skip-qa label if the PR doesn't need to be tested during QA.
  • If you need to backport this PR to another branch, you can add the backport/<branch-name> label to the PR and it will automatically open a backport PR once this one is merged

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants