publish-to-pypi.yml
on: push
Build distribution π¦
11s
Sign the Python π distribution π¦ with Sigstore and upload them to GitHub Release
4s
Annotations
1 error and 3 warnings
|
Sign the Python π distribution π¦ with Sigstore and upload them to GitHub Release
This request has been automatically failed because it uses a deprecated version of `actions/upload-artifact: v3`. Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/
|
|
Create a Trusted Publisher
A new Trusted Publisher for the currently running publishing workflow can be created by accessing the following link(s) while logged-in as an owner of the package(s):
|
|
Upgrade to Trusted Publishing
Trusted Publishers allows publishing packages to PyPI from automated environments like GitHub Actions without needing to use username/password combinations or API tokens to authenticate with PyPI. Read more: https://docs.pypi.org/trusted-publishers
|
|
attestations input ignored
The workflow was run with the 'attestations: true' input, but an explicit password was also set, disabling Trusted Publishing. As a result, the attestations input is ignored.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
python-package-distributions
Expired
|
106 KB |
sha256:f3b73eb553843ba4a50bfd1c6f15290ca96dcd60f4c1fe756d611f615f1b293e
|
|