From f68a2925b43ad84d9e7835950fdbc4e8cec4e464 Mon Sep 17 00:00:00 2001 From: Adam Moussa <166072409+amoussa1229@users.noreply.github.com> Date: Fri, 8 May 2026 17:08:02 -0400 Subject: [PATCH] Add GitHub Actions deploy workflow (#14) * Add GitHub Actions deploy workflow (OIDC) * Add permissions block for OIDC token exchange * Add concurrency control to prevent parallel deploys --- .github/workflows/deploy.yaml | 21 +++++++++++++++++++++ 1 file changed, 21 insertions(+) create mode 100644 .github/workflows/deploy.yaml diff --git a/.github/workflows/deploy.yaml b/.github/workflows/deploy.yaml new file mode 100644 index 0000000..dbe87f4 --- /dev/null +++ b/.github/workflows/deploy.yaml @@ -0,0 +1,21 @@ +name: Deploy +on: + push: + branches: [main] + +permissions: + id-token: write + contents: read + +concurrency: + group: deploy + cancel-in-progress: false + +jobs: + deploy: + uses: Sea-Haven-Industries/.github/.github/workflows/cd-sam.yaml@main + with: + stack-name: ring-scheduler-3cx + cfn-role-arn: arn:aws:iam::328440206208:role/github-cfn-execution-role + secrets: + deploy-role-arn: ${{ secrets.AWS_DEPLOY_ROLE_ARN }}