Skip to content

Merge pull request #72 from aboutcode-org/bump-federatedcode #5

Merge pull request #72 from aboutcode-org/bump-federatedcode

Merge pull request #72 from aboutcode-org/bump-federatedcode #5

Triggered via push January 7, 2025 15:41
Status Success
Total duration 57s
Artifacts 1

pypi-release.yml

on: push
Build and publish library to PyPI
11s
Build and publish library to PyPI
Create GH release
3s
Create GH release
Create PyPI release
17s
Create PyPI release
Fit to window
Zoom out
Zoom in

Annotations

4 warnings
attestations input ignored
The workflow was run with the 'attestations: true' input, but an explicit password was also set, disabling Trusted Publishing. As a result, the attestations input is ignored.
Upgrade to Trusted Publishing
Trusted Publishers allows publishing packages to PyPI from automated environments like GitHub Actions without needing to use username/password combinations or API tokens to authenticate with PyPI. Read more: https://docs.pypi.org/trusted-publishers
Create a Trusted Publisher
A new Trusted Publisher for the currently running publishing workflow can be created by accessing the following link(s) while logged-in as an owner of the package(s):
Deprecation notice: v1, v2, and v3 of the artifact actions
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "pypi_archives". Please update your workflow to use v4 of the artifact actions. Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/

Artifacts

Produced during runtime
Name Size Digest
pypi_archives Expired
119 KB