Why I Stopped Using npm Tokens in GitHub Actions
I recently found out about npm's Trusted Publishers, and my immediate reaction was:
wait, this is so much cooler than the token method.
If you have ever published an npm package from GitHub Actions, y
blog.kubeorch.dev7 min read