diff --git a/.github/workflows/docs-publish.yml b/.github/workflows/docs-publish.yml index 4c48104b0..103354694 100644 --- a/.github/workflows/docs-publish.yml +++ b/.github/workflows/docs-publish.yml @@ -26,7 +26,7 @@ jobs: steps: # Narrow OIDC role that can only read the releaser app's PEM secret. - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 + uses: aws-actions/configure-aws-credentials@e1253824e5c10ff9df46874f81ed3ec929e19cfd # v6.3.0 with: aws-region: us-west-2 role-to-assume: arn:aws:iam::816069134238:role/gha-releaser-secrets-reader diff --git a/.github/workflows/release-trigger.yaml b/.github/workflows/release-trigger.yaml index ee66d3200..8623c893f 100644 --- a/.github/workflows/release-trigger.yaml +++ b/.github/workflows/release-trigger.yaml @@ -76,7 +76,7 @@ jobs: # Narrow OIDC role (omf-github-terraform's oidc-aws.tf) that can only # read the releaser app's PEM secret. - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 + uses: aws-actions/configure-aws-credentials@e1253824e5c10ff9df46874f81ed3ec929e19cfd # v6.3.0 with: aws-region: us-west-2 role-to-assume: arn:aws:iam::816069134238:role/gha-releaser-secrets-reader diff --git a/.github/workflows/schema-pr-preview-cleanup.yml b/.github/workflows/schema-pr-preview-cleanup.yml index 94961f8c8..bc860024b 100644 --- a/.github/workflows/schema-pr-preview-cleanup.yml +++ b/.github/workflows/schema-pr-preview-cleanup.yml @@ -26,7 +26,7 @@ jobs: steps: - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 + uses: aws-actions/configure-aws-credentials@e1253824e5c10ff9df46874f81ed3ec929e19cfd # v6.3.0 with: role-to-assume: ${{ env.AWS_ROLE_ARN }} aws-region: ${{ env.AWS_REGION }} diff --git a/.github/workflows/schema-pr-preview.yml b/.github/workflows/schema-pr-preview.yml index 640a0c3f9..8864d6a75 100644 --- a/.github/workflows/schema-pr-preview.yml +++ b/.github/workflows/schema-pr-preview.yml @@ -94,7 +94,7 @@ jobs: steps: - name: Configure AWS credentials - uses: aws-actions/configure-aws-credentials@cbe3b392738ccf3f987d68400dafcf4b0624a56c # v6.2.4 + uses: aws-actions/configure-aws-credentials@e1253824e5c10ff9df46874f81ed3ec929e19cfd # v6.3.0 with: role-to-assume: ${{ env.AWS_ROLE_ARN }} aws-region: ${{ env.AWS_REGION }}