Skip to content

Publish Python 🐍 distributions 📦 #5

Publish Python 🐍 distributions 📦

Publish Python 🐍 distributions 📦 #5

Manually triggered August 4, 2025 19:32
Status Success
Total duration 50s
Artifacts 2

publish.yml

on: workflow_dispatch
get-tag
4s
get-tag
build-n-publish  /  Build distribution 📦
9s
build-n-publish / Build distribution 📦
build-n-publish  /  Publish Python 🐍 distribution 📦 to TestPyPI
16s
build-n-publish / Publish Python 🐍 distribution 📦 to TestPyPI
build-n-publish  /  Publish Python 🐍 distribution 📦 to PyPI
19s
build-n-publish / Publish Python 🐍 distribution 📦 to PyPI
build-n-publish  /  Sign the Python 🐍 distribution 📦 with Sigstore and upload them to GitHub Release
24s
build-n-publish / Sign the Python 🐍 distribution 📦 with Sigstore and upload them to GitHub Release
Fit to window
Zoom out
Zoom in

Annotations

6 warnings
Create a Trusted Publisher
A new Trusted Publisher for the currently running publishing workflow can be created by accessing the following link(s) while logged-in as an owner of the package(s):
Upgrade to Trusted Publishing
Trusted Publishers allows publishing packages to PyPI from automated environments like GitHub Actions without needing to use username/password combinations or API tokens to authenticate with PyPI. Read more: https://docs.pypi.org/trusted-publishers
attestations input ignored
The workflow was run with the 'attestations: true' input, but an explicit password was also set, disabling Trusted Publishing. As a result, the attestations input is ignored.
Create a Trusted Publisher
A new Trusted Publisher for the currently running publishing workflow can be created by accessing the following link(s) while logged-in as an owner of the package(s):
Upgrade to Trusted Publishing
Trusted Publishers allows publishing packages to PyPI from automated environments like GitHub Actions without needing to use username/password combinations or API tokens to authenticate with PyPI. Read more: https://docs.pypi.org/trusted-publishers
attestations input ignored
The workflow was run with the 'attestations: true' input, but an explicit password was also set, disabling Trusted Publishing. As a result, the attestations input is ignored.

Artifacts

Produced during runtime
Name Size Digest
changelog Expired
569 Bytes
sha256:ebcffedd420a4428109807a87056c38e651739e02c8158dbc113d38f3f77926e
python-package-distributions Expired
58.6 KB
sha256:9ac572f58817817969c481558462e62df7e294c4a4967e903c321d1bb445c44a