--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: creationTimestamp: "2026-03-09T16:25:57Z" managedFields: - apiVersion: rbac.authorization.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:rules: {} manager: cluster-olm-operator operation: Update time: "2026-03-09T16:25:57Z" name: operator-controller-manager-role resourceVersion: "5134" uid: 6c79143d-9979-49fa-9992-11a5c4a13e6a rules: - apiGroups: - apiextensions.k8s.io resources: - customresourcedefinitions verbs: - get - apiGroups: - "" resources: - serviceaccounts/token verbs: - create - apiGroups: - olm.operatorframework.io resources: - clustercatalogs verbs: - get - list - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions verbs: - get - list - patch - update - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions/finalizers verbs: - update - apiGroups: - olm.operatorframework.io resources: - clusterextensions/status verbs: - patch - update - apiGroups: - security.openshift.io resourceNames: - privileged resources: - securitycontextconstraints verbs: - use