Skip to content

fix: validate release app credentials early - #128

Merged
vitormattos merged 4 commits into
mainfrom
fix/release-app-credential-validation
Sep 22, 2026
Merged

vitormattos merged 4 commits into
mainfrom
fix/release-app-credential-validation

Conversation

@vitormattos

Copy link
Copy Markdown
Member

Fixes the failure mode observed in LibreSign Prepare release run 35667899070.

  • validates GitHub App id/private key before expensive release planning or post-merge restoration;
  • reports actionable consumer configuration errors instead of the indirect Octokit appId option is required failure;
  • fixes Markdown code formatting in the authorization job summary so Bash does not execute values inside backticks;
  • documents that write-capable consumer workflows need the App variable/secret in their own Actions context and that the App installation must include the consumer repository;
  • bumps the workflow platform patch version to 0.6.2.

No credential values are logged.

Signed-off-by: Vitor Mattos <vitor@php.rio>
Signed-off-by: Vitor Mattos <vitor@php.rio>
Signed-off-by: Vitor Mattos <vitor@php.rio>
Signed-off-by: Vitor Mattos <vitor@php.rio>
@vitormattos
vitormattos merged commit 5a16fb0 into main Sep 22, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant