--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: creationTimestamp: "2025-12-03T19:55:45Z" managedFields: - apiVersion: rbac.authorization.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:rules: {} manager: cluster-olm-operator operation: Update time: "2025-12-03T19:55:45Z" name: operator-controller-manager-role resourceVersion: "5573" uid: bdd5cf78-8940-4845-a6ee-bfcb06e87821 rules: - apiGroups: - apiextensions.k8s.io resources: - customresourcedefinitions verbs: - get - apiGroups: - "" resources: - serviceaccounts/token verbs: - create - apiGroups: - olm.operatorframework.io resources: - clustercatalogs verbs: - get - list - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions verbs: - get - list - patch - update - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions/finalizers verbs: - update - apiGroups: - olm.operatorframework.io resources: - clusterextensions/status verbs: - patch - update - apiGroups: - security.openshift.io resourceNames: - privileged resources: - securitycontextconstraints verbs: - use