theupdateframework / theupdateframework/python-tuf
Use Immutable Releases
Dieses Issue hat noch niemand übernommen.
- Vorherrschende Sprache
- Python
- Sterne
- 1.7k
- Forks
- 304
- Ø Merge
- 1 T. 2 Std.
- Gemergte PRs (30 T.)
- 17
Beschreibung
There's a checkbox in the settings Enable release immutability: we should check it.
The docs are just vague enough that I'm not 100% sure if our current released workflow works with it:
- Description is "Disallow assets and tags from being modified once a release is published"
- We don't modify assets but do add them after the initial publish: I think that might still be a violation
Maybe best to tweak the release workflow so the initial publish makes the release a draft (and the final publish makes it non-draft): then we should be good to go.
Beitragsleitfaden
Erste Schritte
- Lies das ganze Issue und danach den Beitragsleitfaden des Projekts.
- Schreib ins Issue, dass du es übernimmst — das erspart doppelte Arbeit.
- Forke das Repository und arbeite in einem Branch.
- Öffne einen Pull Request, der die Issue-Nummer nennt.
Rechercherichtung
Beginne mit dem Release-Workflow des Repositorys und überprüfe, wie er Releases veröffentlicht und Assets hinzufügt. Prüfe das Verhalten der Release-Unveränderlichkeit von GitHub und passe anschließend den Workflow so an, dass das initiale Release ein Entwurf ist und die endgültige Veröffentlichung kein Entwurf ist. Erledigt ist die Aufgabe, wenn der Workflow abgeschlossen wird, ohne ein unveränderliches Release zu ändern, und alle Release-Assets vorhanden sind.
Vom Indexierungsmodell aus dem Issue-Text verfasst.
Bewertung
- Tech-Stack
- github-actions
- Bereich
- ci-cd, release
- Issue-Typ
- Feature
- Schwierigkeit
- 3/5
- Geschätzter Aufwand
- 1-2 Tage
- Aktivitätsstatus
- Veraltet
- Klarheit
- Größtenteils klar
- Anfängerfreundlichkeit
- 45/100