diff --git a/.github/workflows/docs-publish.yml b/.github/workflows/docs-publish.yml index 8e3c791ae..6da59f447 100644 --- a/.github/workflows/docs-publish.yml +++ b/.github/workflows/docs-publish.yml @@ -26,7 +26,7 @@ jobs: steps: # Narrow OIDC role that can only read the releaser app's PEM secret. - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@e6de054238d6b7531b4efff3b6587d9aade6a06c # v6.2.3 + uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 with: aws-region: us-west-2 role-to-assume: arn:aws:iam::816069134238:role/gha-releaser-secrets-reader diff --git a/.github/workflows/release-trigger.yaml b/.github/workflows/release-trigger.yaml index 1c9175760..6b1374e96 100644 --- a/.github/workflows/release-trigger.yaml +++ b/.github/workflows/release-trigger.yaml @@ -76,7 +76,7 @@ jobs: # Narrow OIDC role (omf-github-terraform's oidc-aws.tf) that can only # read the releaser app's PEM secret. - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@e6de054238d6b7531b4efff3b6587d9aade6a06c # v6.2.3 + uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 with: aws-region: us-west-2 role-to-assume: arn:aws:iam::816069134238:role/gha-releaser-secrets-reader diff --git a/.github/workflows/schema-pr-preview-cleanup.yml b/.github/workflows/schema-pr-preview-cleanup.yml index e6ca3bee7..94961f8c8 100644 --- a/.github/workflows/schema-pr-preview-cleanup.yml +++ b/.github/workflows/schema-pr-preview-cleanup.yml @@ -26,7 +26,7 @@ jobs: steps: - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@e6de054238d6b7531b4efff3b6587d9aade6a06c # v6.2.3 + uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 with: role-to-assume: ${{ env.AWS_ROLE_ARN }} aws-region: ${{ env.AWS_REGION }} diff --git a/.github/workflows/schema-pr-preview.yml b/.github/workflows/schema-pr-preview.yml index 27ddca841..7c3f522bb 100644 --- a/.github/workflows/schema-pr-preview.yml +++ b/.github/workflows/schema-pr-preview.yml @@ -94,7 +94,7 @@ jobs: steps: - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@e6de054238d6b7531b4efff3b6587d9aade6a06c # v6.2.3 + uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 with: role-to-assume: ${{ env.AWS_ROLE_ARN }} aws-region: ${{ env.AWS_REGION }}