Reference
apex oidc
OIDC: what this issuer publishes, and what a token says it is
apex oidc [command]Examples
The discovery document a cloud provider fetches to trust these tokens.
apex oidc discoveryFold the calling workflow into a repository's subject claim.
apex oidc subject set acme/web --claim repo context job_workflow_refSubcommands
apex oidc discovery
The OIDC discovery document, as a cloud provider fetches it
apex oidc discovery [options]| Option | Description |
|---|---|
--json | machine-readable output |
apex oidc subject
A repository's OIDC subject claim (repository admin)
apex oidc subject [command] <repository>With an API token, needs the permission actions:read.
| Argument | Description |
|---|---|
<repository> | owner/repo |
apex oidc subject set
Fold claims into the subject, or reset to the default with no --claim
apex oidc subject set [options] <repository>With an API token, needs the permission actions:write.
| Argument | Description |
|---|---|
<repository> | owner/repo |
| Option | Description |
|---|---|
--claim <key...> | claim keys, in the order they appear in the subject |