Closed trallard closed 3 months ago
@trallard I've invited you as an owner on pypi (and recommend we add other core maintainers in the same role as well)
Feel free to add me if you want, we use trusted publisher in MNE too so I'm familiar
Added you @drammock!
PR is up now at #1758; the only outstanding item is removing the existing tokens from GitHub itself. This is not something I can do with my current permissions/role, so this would be a task for someone else with elevated privileges.
We use the
publish.yaml
workflow for PST releases.This still uses a
token
for this action, though trusted publishing is now encouraged over API tokens as a best practice on supported platforms (like GitHub).To do this, we would need to:
publish.yaml
- I can do thisRef: https://docs.pypi.org/trusted-publishers/adding-a-publisher/