From 9c93e185f88eb9bd10175e0cb284b091f92b3008 Mon Sep 17 00:00:00 2001 From: Ben Vincent Date: Sat, 7 Mar 2026 10:49:12 +1100 Subject: [PATCH] feat: enable woodpecker access to ro tokens - enable woodpecker tasks to access gitea/github read-only tokens --- .../service/gitea/unkinben/tokens/read-only-packages/read.yaml | 2 ++ .../kv/service/github/neoloc/tokens/read-only-token/read.yaml | 2 ++ 2 files changed, 4 insertions(+) diff --git a/policies/kv/service/gitea/unkinben/tokens/read-only-packages/read.yaml b/policies/kv/service/gitea/unkinben/tokens/read-only-packages/read.yaml index a667cb7..354fead 100644 --- a/policies/kv/service/gitea/unkinben/tokens/read-only-packages/read.yaml +++ b/policies/kv/service/gitea/unkinben/tokens/read-only-packages/read.yaml @@ -8,3 +8,5 @@ rules: auth: approle: - rpmbuilder + k8s/au/syd1: + - woodpecker diff --git a/policies/kv/service/github/neoloc/tokens/read-only-token/read.yaml b/policies/kv/service/github/neoloc/tokens/read-only-token/read.yaml index 2194dca..1cb2085 100644 --- a/policies/kv/service/github/neoloc/tokens/read-only-token/read.yaml +++ b/policies/kv/service/github/neoloc/tokens/read-only-token/read.yaml @@ -8,3 +8,5 @@ rules: auth: approle: - rpmbuilder + k8s/au/syd1: + - woodpecker