--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: creationTimestamp: "2026-03-18T09:55:07Z" managedFields: - apiVersion: rbac.authorization.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:rules: {} manager: cluster-olm-operator operation: Update time: "2026-03-18T09:55:07Z" name: operator-controller-manager-role resourceVersion: "6117" uid: e65a89c5-f74d-4749-af22-3d5e91a1972c rules: - apiGroups: - apiextensions.k8s.io resources: - customresourcedefinitions verbs: - get - apiGroups: - "" resources: - serviceaccounts/token verbs: - create - apiGroups: - olm.operatorframework.io resources: - clustercatalogs verbs: - get - list - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions verbs: - get - list - patch - update - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions/finalizers verbs: - update - apiGroups: - olm.operatorframework.io resources: - clusterextensions/status verbs: - patch - update - apiGroups: - security.openshift.io resourceNames: - privileged resources: - securitycontextconstraints verbs: - use