--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: creationTimestamp: "2025-12-04T11:38:03Z" managedFields: - apiVersion: rbac.authorization.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:rules: {} manager: cluster-olm-operator operation: Update time: "2025-12-04T11:38:03Z" name: operator-controller-manager-role resourceVersion: "5807" uid: 95419078-a5ad-4d5d-a264-cd65b294db25 rules: - apiGroups: - apiextensions.k8s.io resources: - customresourcedefinitions verbs: - get - apiGroups: - "" resources: - serviceaccounts/token verbs: - create - apiGroups: - olm.operatorframework.io resources: - clustercatalogs verbs: - get - list - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions verbs: - get - list - patch - update - watch - apiGroups: - olm.operatorframework.io resources: - clusterextensions/finalizers verbs: - update - apiGroups: - olm.operatorframework.io resources: - clusterextensions/status verbs: - patch - update - apiGroups: - security.openshift.io resourceNames: - privileged resources: - securitycontextconstraints verbs: - use