096d677129
ci/woodpecker/push/apply Pipeline was successful
The vlogs OIDC client secret moves to its own Kubernetes namespace under service account `default`, so it lands on `kv/data/kubernetes/namespace/vlogs/default/oauth-credentials`. The shared per-namespace rule already matches that path, leaving the vlogs-specific policy with nothing to grant. - Delete `policies/kv/kubernetes/namespace/logging/default/vlogs-oauth-credentials/read.yaml`. The shared oauth-credentials policy is untouched. Reviewed-on: #160 Co-authored-by: unkin-agent <unkin-agent@unkin.net> Co-committed-by: unkin-agent <unkin-agent@unkin.net>