Konubinix' opinionated web of thoughts

Using Personal Access Token (PAT) in the Github Container Registry


github container registry

Note: By default, when you select the write:packages scope for your personal access token (PAT) in the user interface, the repo scope will also be selected. The repo scope offers unnecessary and broad access, which we recommend you avoid using for GitHub Actions workflows in particular. For more information, see “Security hardening for GitHub Actions.” As a workaround, you can select just the write:packages scope for your PAT in the user interface with this url: https://github.com/settings/tokens/new?scopes=write:packages