Skip to content

Publish Python 🐍 distributions 📦 #7

Publish Python 🐍 distributions 📦

Publish Python 🐍 distributions 📦 #7

Manually triggered October 9, 2025 17:36
Status Success
Total duration 49s
Artifacts 2

publish.yml

on: workflow_dispatch
get-tag
6s
get-tag
build-n-publish  /  Build distribution 📦
14s
build-n-publish / Build distribution 📦
build-n-publish  /  Publish Python 🐍 distribution 📦 to TestPyPI
15s
build-n-publish / Publish Python 🐍 distribution 📦 to TestPyPI
build-n-publish  /  Publish Python 🐍 distribution 📦 to PyPI
20s
build-n-publish / Publish Python 🐍 distribution 📦 to PyPI
build-n-publish  /  Sign the Python 🐍 distribution 📦 with Sigstore and upload them to GitHub Release
20s
build-n-publish / Sign the Python 🐍 distribution 📦 with Sigstore and upload them to GitHub Release
Fit to window
Zoom out
Zoom in

Annotations

6 warnings
Create a Trusted Publisher
A new Trusted Publisher for the currently running publishing workflow can be created by accessing the following link(s) while logged-in as an owner of the package(s):
Upgrade to Trusted Publishing
Trusted Publishers allows publishing packages to PyPI from automated environments like GitHub Actions without needing to use username/password combinations or API tokens to authenticate with PyPI. Read more: https://docs.pypi.org/trusted-publishers
attestations input ignored
The workflow was run with the 'attestations: true' input, but an explicit password was also set, disabling Trusted Publishing. As a result, the attestations input is ignored.
Create a Trusted Publisher
A new Trusted Publisher for the currently running publishing workflow can be created by accessing the following link(s) while logged-in as an owner of the package(s):
Upgrade to Trusted Publishing
Trusted Publishers allows publishing packages to PyPI from automated environments like GitHub Actions without needing to use username/password combinations or API tokens to authenticate with PyPI. Read more: https://docs.pypi.org/trusted-publishers
attestations input ignored
The workflow was run with the 'attestations: true' input, but an explicit password was also set, disabling Trusted Publishing. As a result, the attestations input is ignored.

Artifacts

Produced during runtime
Name Size Digest
changelog Expired
778 Bytes
sha256:64fee06367954952fb2bba2d887c82a86e02dc7a5caa9fc278d41c39c3d656d9
python-package-distributions Expired
62.6 KB
sha256:0905ce4cc908d3908b5aca9ee7e9758f3a6e928e152dcd8ce09d12c8d3076042