Skip to content

ci: restrict uploaded artifacts to release and test evidence - #15

Merged
Quaternion8192 merged 1 commit into
developfrom
fix/artifact-upload-allowlist
Oct 9, 2026
Merged

Quaternion8192 merged 1 commit into
developfrom
fix/artifact-upload-allowlist

Conversation

@Quaternion8192

Copy link
Copy Markdown
Contributor

Replace recursive artifact-directory uploads with file allowlists so verification caches, consumer bin/obj output, published executables and ABI build intermediates are omitted. Retain packages and symbols, manifests, SBOMs, release/support notes, consumer project/source and lock files, and test/verification reports across CI, preview and stable evidence.

Only upload path fields in three workflows change. All verification commands, publication steps, artifact names, retention and failure policies remain identical to develop.

Verification

  • YAML parsing and structural comparison passed: every non-path workflow field is unchanged.
  • All 10 upload allowlists passed fixture checks using the GitHub Actions glob library, including required evidence and rejected cache/binary/temporary files.
  • git diff --check passed; one atomic commit; default Quaternion8192 author and committer.
  • No library source or dependencies changed. Validation tooling and fixtures are ignored under draft.

@Quaternion8192
Quaternion8192 merged commit 607547e into develop Oct 9, 2026
4 of 5 checks passed
@Quaternion8192
Quaternion8192 deleted the fix/artifact-upload-allowlist branch October 9, 2026 00:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant