--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: creationTimestamp: "2025-12-04T22:00:53Z" managedFields: - apiVersion: rbac.authorization.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:rules: {} manager: cluster-olm-operator operation: Update time: "2025-12-04T22:00:53Z" name: operator-controller-manager-role resourceVersion: "5626" uid: be510a99-6a5e-4dea-89f1-7aa7edaf54d8 rules: - apiGroups: - apiextensions.k8s.io resources: - customresourcedefinitions verbs: - get - apiGroups: - "" resources: - serviceaccounts/token verbs: - create - apiGroups: - olm.operatorframework.io resources: - clustercatalogs verbs: - get - list - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions verbs: - get - list - patch - update - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions/finalizers verbs: - update - apiGroups: - olm.operatorframework.io resources: - clusterextensions/status verbs: - patch - update - apiGroups: - security.openshift.io resourceNames: - privileged resources: - securitycontextconstraints verbs: - use