Skip to content

ci(release): pass the minted GitHub App token to release-please - #20

Merged
gabrielfrasantos merged 1 commit into
mainfrom
ccr-8377b087-s2s0v8-release-token
Oct 1, 2026
Merged

gabrielfrasantos merged 1 commit into
mainfrom
ccr-8377b087-s2s0v8-release-token

Conversation

@gabrielfrasantos

Copy link
Copy Markdown
Contributor

Mirrors embedded-pro/numerical-toolbox-cpp#342 (issue embedded-pro/numerical-toolbox-cpp#338).

release-please.yml mints an app token (steps.token) but passes secrets.RELEASE_PLEASE_TOKEN to release-please, so the app step does nothing. This PR uses ${{ steps.token.outputs.token }} instead. Release PRs are then opened by the app and trigger CI, and the RELEASE_PLEASE_TOKEN PAT secret can be retired once this is merged.

🤖 Generated with Claude Code

https://claude.ai/code/session_01N4pngRiBqeb1xiseKXNLG6


Generated by Claude Code

The create-github-app-token step output was never referenced; release-please
still used the RELEASE_PLEASE_TOKEN PAT. Use the app token so release PRs are
opened by the app and trigger CI; the PAT secret can be retired.

Mirrors embedded-pro/numerical-toolbox-cpp#342 (embedded-pro/numerical-toolbox-cpp#338).

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01N4pngRiBqeb1xiseKXNLG6
@github-actions

github-actions Bot commented Oct 1, 2026

Copy link
Copy Markdown

✅⚠️MegaLinter analysis: Success with warnings

Descriptor Linter Files Fixed Errors Max errors Warnings Elapsed time
✅ ACTION actionlint 7 0 0 0.62s
✅ CPP clang-format 35 0 0 0 0.66s
✅ CPP cppcheck 35 0 0 1.05s
✅ DOCKERFILE hadolint 1 0 0 0.58s
✅ JSON jsonlint 8 0 0 0.11s
✅ JSON prettier 8 2 0 0 0.37s
✅ MARKDOWN markdownlint 131 0 0 0 2.02s
✅ MARKDOWN markdown-table-formatter 131 0 0 0 0.19s
⚠️ SPELL lychee 165 2 0 1.77s
✅ YAML prettier 12 0 0 0 0.53s
✅ YAML yamllint 12 0 0 0.59s

Detailed Issues

⚠️ SPELL / lychee - 2 errors
[ERROR] failed to verify TLS certificate: invalid peer certificate: UnknownIssuer
📝 Summary
---------------------
🔍 Total..........104
🔗 Unique..........42
✅ Successful......92
⏳ Timeouts.........0
🔀 Redirected.......5
👻 Excluded.........9
❓ Unknown..........0
🚫 Errors...........2
⛔ Unsupported......2

Errors in .github/workflows/static-analysis.yml
[403] https://binaries.sonarsource.com/Distribution/sonar-scanner-cli/sonar-scanner-cli-$ (at 37:21) | Rejected status code: 403 Forbidden

Errors in doc/kinematics/InverseKinematics.md
[ERROR] https://mathweb.ucsd.edu/~sbuss/ResearchWeb/ikmethods/iksurvey.pdf (at 124:169) | SSL certificate not trusted. Use --insecure if site is trusted

Hint: Followed 5 redirects. You might want to consider replacing redirecting URLs with the resolved URLs. Use verbose mode (`-v`/`-vv`) to see redirection details.
Hint: You can configure accepted/rejected response codes with `-a` or `--accept`

Notices

⚠️ Your configuration references items that have been removed from MegaLinter and are ignored: REPOSITORY_GITLEAKS, REPOSITORY_KICS. See Removed linters to find their replacements.

See detailed reports in MegaLinter artifacts

Your project could benefit from a custom flavor, which would allow you to run only the linters you need, and thus improve runtime performances. (Skip this info by defining FLAVOR_SUGGESTIONS: false)

  • Documentation: Custom Flavors
  • Command: npx mega-linter-runner@10.1.0 --custom-flavor-setup --custom-flavor-linters ACTION_ACTIONLINT,CPP_CPPCHECK,CPP_CLANG_FORMAT,DOCKERFILE_HADOLINT,JSON_JSONLINT,JSON_PRETTIER,MARKDOWN_MARKDOWNLINT,MARKDOWN_MARKDOWN_TABLE_FORMATTER,SPELL_LYCHEE,YAML_PRETTIER,YAML_YAMLLINT

MegaLinter is provided by OX Security
Show us your support by starring ⭐ the repository

@sonarqubecloud

sonarqubecloud Bot commented Oct 1, 2026

Copy link
Copy Markdown

@gabrielfrasantos
gabrielfrasantos merged commit 80029ab into main Oct 1, 2026
9 checks passed
@gabrielfrasantos
gabrielfrasantos deleted the ccr-8377b087-s2s0v8-release-token branch October 1, 2026 06:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants