fix: add explicit GitHub Actions deploy workflow with id-token:write permission - #7
Merged
Conversation
…permission The pages-build-deployment dynamic workflow was failing with "Deployment failed, try again later." because the implicit deploy-from-branch approach lacked the explicit id-token:write OIDC permission required by actions/deploy-pages@v5. This adds .github/workflows/deploy.yml with: - id-token: write (required for OIDC-based Pages deployment) - pages: write and contents: read - Proper concurrency group to prevent overlapping deployments - Triggers on push to main and supports workflow_dispatch
Copilot
AI
changed the title
[WIP] Fix failing GitHub Actions job "deploy"
fix: add explicit GitHub Actions deploy workflow with id-token:write permission
Jul 5, 2026
nikolaimak
approved these changes
Jul 5, 2026
nikolaimak
marked this pull request as ready for review
July 5, 2026 21:14
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
The
pages-build-deploymentdynamic workflow was failing withDeployment failed, try again later.because the implicit "Deploy from branch" mechanism never grantsid-token: write, whichactions/deploy-pages@v5requires for OIDC authentication against the Pages API.Changes
.github/workflows/deploy.yml— new explicit Pages deployment workflow replacing the implicit branch-deploy mechanism:id-token: write(the missing permission causing the failure),pages: write,contents: readconcurrency: group: pages, cancel-in-progress: falseto prevent overlapping deploymentscheckout→configure-pages@v5→upload-pages-artifact@v3(path:.) →deploy-pages@v5pushtomainand supportsworkflow_dispatch