codeburn/.github/workflows
AgentSeal d80f68928b ci: add npm OIDC trusted-publish workflow
Triggers on v* tag push or manual dispatch. Builds, tests, then publishes
codeburn to npm with provenance attestation. Uses OIDC so no NPM_TOKEN is
stored in repo secrets. The npm-publish GitHub Environment gates the
publish step behind a required reviewer, so every release needs explicit
human approval before it reaches the registry.

Tag/package version mismatch fails fast before any build work. Tests run
before publish to prevent shipping a broken release.
2026-04-18 07:43:06 -07:00
..
publish-npm.yml ci: add npm OIDC trusted-publish workflow 2026-04-18 07:43:06 -07:00
release-menubar.yml docs: scrub private strategy notes from public text 2026-04-17 17:12:48 -07:00