--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: namespace: {{ .Values.pipelineRunNamespace }} name: shell-operator labels: {{- include "tekton-pipelines.labels" . | nindent 4 }} rules: - apiGroups: [""] resources: ["configmaps"] verbs: ["*"] - apiGroups: ["tekton.dev"] resources: ["pipelineruns"] verbs: ["*"] --- apiVersion: v1 kind: ServiceAccount metadata: name: shell-operator namespace: {{ .Values.pipelineRunNamespace }} labels: {{- include "tekton-pipelines.labels" . | nindent 4 }} --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: shell-operator namespace: {{ .Values.pipelineRunNamespace }} labels: {{- include "tekton-pipelines.labels" . | nindent 4 }} subjects: - kind: ServiceAccount name: shell-operator namespace: {{ .Values.pipelineRunNamespace }} roleRef: kind: ClusterRole name: shell-operator apiGroup: rbac.authorization.k8s.io