Repository navigation
fix(ci): sign with the legacy .sig format (--new-bundle-format=false)… #35
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: Main | |
| on: | |
| push: | |
| branches: | |
| - main | |
| paths: | |
| - ".github/actions/**" | |
| - ".github/workflows/**" | |
| - "golangci-default.yaml" | |
| - "README.md" | |
| workflow_dispatch: | |
| concurrency: | |
| group: ${{ github.workflow }}-${{ github.ref }} | |
| cancel-in-progress: true | |
| permissions: | |
| contents: read | |
| jobs: | |
| validate: | |
| name: Validate | |
| uses: ./.github/workflows/validate.yaml | |
| release: | |
| name: Release | |
| needs: | |
| - validate | |
| uses: ./.github/workflows/semantic-release.yaml | |
| # semantic-release.yaml only creates GitHub releases and pushes file | |
| # bumps via @semantic-release/git — it publishes no images and does no | |
| # OIDC, so packages:write / id-token:write are not needed here. | |
| permissions: | |
| contents: write | |
| issues: write | |
| pull-requests: write | |
| secrets: inherit |