Merge pull request #227 from aboutcode-org/release-prep #44
pypi-release.yml
on: push
Build and publish library to PyPI
20s
Create PyPI release
18s
Annotations
3 warnings
|
attestations input ignored
The workflow was run with the 'attestations: true' input, but an explicit password was also set, disabling Trusted Publishing. As a result, the attestations input is ignored.
|
|
Upgrade to Trusted Publishing
Trusted Publishers allows publishing packages to PyPI from automated environments like GitHub Actions without needing to use username/password combinations or API tokens to authenticate with PyPI. Read more: https://docs.pypi.org/trusted-publishers
|
|
Create a Trusted Publisher
A new Trusted Publisher for the currently running publishing workflow can be created by accessing the following link(s) while logged-in as an owner of the package(s):
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
pypi_archives
Expired
|
1.27 MB |
sha256:22ebeaba4e66f057b6acf836cda00d09cb1c379b69e02ee5fc250558048afe1a
|
|