Skip to content

Add CI and a trusted-publishing release workflow - #14

Merged
usiegj00 merged 1 commit into
mainfrom
ci-and-trusted-publishing
Sep 10, 2026
Merged

usiegj00 merged 1 commit into
mainfrom
ci-and-trusted-publishing

Conversation

@usiegj00

Copy link
Copy Markdown
Contributor

Adds .github/workflows/ci.yml (specs on push and PR) and .github/workflows/release.yml (on a v* tag: specs, then build and push to RubyGems via trusted publishing / OIDC — no API key in the repo).

BUNDLE_FROZEN: "false" in both jobs: setup-ruby's bundler-cache installs frozen, which fails when the lockfile's RUBY VERSION does not match the runner's patch level. That is the failure on idrac's dependabot PRs.

Needs the matching trusted publisher registered on rubygems.org for this gem (repository buildio/radfish, workflow release.yml).

CI runs the specs on pushes to main and on pull requests. Release fires on
a vX.Y.Z tag: it runs the specs, then builds and pushes the gem through
RubyGems trusted publishing, so no API key is stored in this repository.

BUNDLE_FROZEN is off in both jobs. setup-ruby's bundler-cache installs in
frozen mode, which fails whenever the lockfile's RUBY VERSION does not match
the runner's patch level -- that is what has been failing idrac's CI on the
dependabot PRs.
@usiegj00
usiegj00 merged commit f66956b into main Sep 10, 2026
1 check passed
@usiegj00
usiegj00 deleted the ci-and-trusted-publishing branch September 10, 2026 14:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant