Skip to content

fix: use configured app secrets in consumer workflows - #129

Merged
vitormattos merged 2 commits into
mainfrom
fix/use-release-app-secrets
Sep 22, 2026
Merged

vitormattos merged 2 commits into
mainfrom
fix/use-release-app-secrets

Conversation

@vitormattos

Copy link
Copy Markdown
Member

Aligns consumer workflows with the existing LibreCode Workflow Automation credential contract.

  • Prepare release now reads both GitHub App credentials from Actions secrets;
  • release orchestration is pinned to github-workflows v0.6.2, which validates credentials before planning and fixes authorization summary quoting;
  • Update workflows uses the same secret-backed App id instead of looking for a repository variable;
  • regression tests reject the old vars.LIBRECODE_WORKFLOW_APP_ID form.

This fixes the empty App id observed in LibreSign run 35667899070 without requiring a new secret value if the existing secret is already configured in the consumer context.

Signed-off-by: Vitor Mattos <vitor@php.rio>
Signed-off-by: Vitor Mattos <vitor@php.rio>
@vitormattos
vitormattos merged commit 8ec03dc into main Sep 22, 2026
6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant