Skip to content

feat(workload-identity): Workload Identity Federation (WIP — Heimdal hackathon)#191

Draft
jeschkies wants to merge 3 commits into
mainfrom
karsten/wif
Draft

feat(workload-identity): Workload Identity Federation (WIP — Heimdal hackathon)#191
jeschkies wants to merge 3 commits into
mainfrom
karsten/wif

Conversation

@jeschkies

Copy link
Copy Markdown
Contributor

Summary:

  • Refactors configuration of request headers. Uses Option.Apply() pattern now.
  • Introduces Workload Identify Federation by leveraging AWS STS GetWebIdentityToken().

… hackathon)

Summary:
  - Refactors configuration of request headers. Uses Option.Apply()
    pattern now.
  - Introduces Workload Identify Federation by leveraging AWS STS
    GetWebIdentityToken().
@github-actions

This comment has been minimized.

1 similar comment
@github-actions

This comment has been minimized.

@github-actions

Copy link
Copy Markdown

⚠️ The workflow jobs listed below don't declare a permissions: block and may break when the organization's default GITHUB_TOKEN permissions are restricted to read-only.

Expand for findings
warning[excessive-permissions]: overly broad permissions
  --> ./.github/workflows/go.yml:5:3
   |
 5 | /   build:
 6 | |     runs-on: ubuntu-latest
 7 | |
 8 | |     steps:
...  |
23 | |         run: go test ./...
24 | |
   | | ^
   | | |
   | |_this job
   |   default permissions used due to no permissions: block
   |
   = note: audit confidence → Medium
   = help: audit documentation → https://docs.zizmor.sh/audits/#excessive-permissions

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant