Skip to content

CI: harden PyPI publish workflow#9

Merged
bardonadam merged 1 commit intomainfrom
chore/pypi-publish-guardrails
Feb 7, 2026
Merged

CI: harden PyPI publish workflow#9
bardonadam merged 1 commit intomainfrom
chore/pypi-publish-guardrails

Conversation

@bardonadam
Copy link
Contributor

@bardonadam bardonadam commented Feb 7, 2026

Summary

  • verify pushed tag version matches pyproject.toml
  • support both PYPI_API_TOKEN and trusted publisher (OIDC)
  • keep tag-triggered publish behavior unchanged

Why

  • prevents mismatched tag/package releases
  • allows gradual migration between token and OIDC publishing

@bardonadam bardonadam merged commit 077deab into main Feb 7, 2026
1 check passed
@bardonadam bardonadam deleted the chore/pypi-publish-guardrails branch February 7, 2026 11:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant