.github/workflow-templates/release.yml
Adam Moussa 9c1ecf9428
Some checks are pending
ci / ci / ci (push) Waiting to run
Release on reusable change / version (push) Waiting to run
Release on reusable change / release (push) Blocked by required conditions
ci: add deterministic PR policy and align org templates (PLAT-62) (#115)
* docs: align organization templates with Cursor conventions

Refs: PLAT-62

* ci: add deterministic PR policy gate

Refs: PLAT-62

* fix(ci): grandfather unchanged workflow policy debt

Refs: PLAT-62

* fix(ci): address PR policy security review

Refs: PLAT-62

* fix(ci): scan copied workflow files

Refs: PLAT-62

* fix(ci): close remaining workflow policy bypasses

Refs: PLAT-62

* fix(policy): reject uses block scalar action refs

Co-authored-by: Adam Moussa <amoussa1229@users.noreply.github.com>

* fix(policy): preserve line-specific violation fingerprints

Co-authored-by: Adam Moussa <amoussa1229@users.noreply.github.com>

---------

Co-authored-by: Cursor Agent <cursoragent@cursor.com>
Co-authored-by: Adam Moussa <amoussa1229@users.noreply.github.com>
2026-08-03 20:30:32 -04:00

24 lines
830 B
YAML

name: Release
on:
workflow_dispatch:
inputs:
version:
description: 'Version to release, e.g. 1.4.0 (a leading "v" is accepted)'
type: string
required: true
permissions:
# The reusable workflow pushes an annotated tag and publishes a Release.
contents: write
jobs:
release:
uses: Sea-Haven-Industries/.github/.github/workflows/release.yaml@81cf168170f356d1423d7736f7ce93fd6611ad53 # v1.0.4
with:
version: ${{ inputs.version }}
# Tags in this org are v-prefixed MAJOR.MINOR.PATCH; "v" is the default
# and is passed explicitly so a repo can see what it is producing.
tag-prefix: "v"
# Notes come from GitHub's commit-history generator. Set notes-file
# instead to publish the contents of a file as the release notes.
generate-notes: true