Docs
Reference

GitHub Actions variables

Move plaintext variables to and from a GitHub repository or environment.

Move plaintext variables to and from a GitHub repository or environment.

The connection

WhatThis provider
VendorGitHub
Keygithub-actions-variables
Availabilityavailable. You can connect it today.
Credential penv holdsgithub-token
Values read backyes
Activationimmediate

What it moves

DirectionWhat it does
importReads names and values out of the store into penv.
exportWrites names and values from penv into the store.

When a written value goes live

immediate. The running app sees a new value at once.

What happens to a name that exists

DirectionPolicies you can pick
importskip_existing, new_version, fail
exportcreate_only, overwrite, overwrite_and_prune

How syncs work says what each one does.

How you connect

You paste a credential you already hold. penv seals it and never shows it again.

FieldLabelKindRequiredWhat it is
tokenAccess tokensecret, masked here and sealedyes

What a mapping asks for

Answered once per environment you map.

FieldLabelKindRequiredAdvancedWhat it is
repositoryRepositorytextyesnoThe repository this sync writes to.
ownerAccounttextyesnoThe account or organization that owns it.
environmentEnvironmenttextnoyesLeave empty for the repository's own store. An environment must already exist.

Permissions it needs

penv probes for these when it verifies the connection.

PermissionDirectionsBlockingWithout it
user:readevery directionyesWe cannot confirm which GitHub account this token belongs to.
variables:readimportyesImport cannot read variable values.
variables:writeexportyesExport cannot write anything.