Skip to content

Docs vault: the publisher build is manual and gated on one machine — document the runbook and add a dry-run check to CI #396

Description

@SecureCloudGroup

Any change to docs/0*.md must be followed by a rebuild of the docs vault (tools/example-vaults/build.py, publisher key only in the sb_publisher_data Docker volume on the maintainer's machine) before the next tag, or the vault-freshness job fails the release. This is correct but undocumented for contributors, who see a red release gate with no explanation.

Done means: docs/internal/ has a page explaining the gate and the rebuild, CONTRIBUTING.md links it from the docs section, and a CI check on pull requests that touch docs/0*.md posts a comment saying the vault rebuild will be required (no secrets needed).

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    documentationImprovements or additions to documentationhelp wantedExtra attention is needed

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions