fix: correct release workflow secret conditions #7
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: Release | ||
|
Check failure on line 1 in .github/workflows/release.yml
|
||
| on: | ||
| push: | ||
| branches: [main] | ||
| concurrency: ${{ github.workflow }}-${{ github.ref }} | ||
| jobs: | ||
| release: | ||
| runs-on: ubuntu-latest | ||
| permissions: | ||
| contents: write | ||
| pull-requests: write | ||
| id-token: write | ||
| steps: | ||
| - uses: actions/checkout@v4 | ||
| - uses: actions/setup-node@v4 | ||
| with: | ||
| node-version: 22 | ||
| cache: npm | ||
| registry-url: https://registry.npmjs.org | ||
| - run: npm ci | ||
| - name: Create Release Pull Request or Publish (NPM token) | ||
| if: ${{ secrets.NPM_TOKEN }} | ||
| uses: changesets/action@v1 | ||
| with: | ||
| publish: npm run release | ||
| version: npm run version | ||
| commit: "chore: release packages" | ||
| title: "chore: release packages" | ||
| env: | ||
| GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | ||
| NODE_AUTH_TOKEN: ${{ secrets.NPM_TOKEN }} | ||
| NPM_CONFIG_PROVENANCE: true | ||
| - name: Create Release Pull Request or Publish (Trusted Publisher) | ||
| if: ${{ !secrets.NPM_TOKEN }} | ||
| uses: changesets/action@v1 | ||
| with: | ||
| publish: npm run release | ||
| version: npm run version | ||
| commit: "chore: release packages" | ||
| title: "chore: release packages" | ||
| env: | ||
| GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | ||
| NPM_CONFIG_PROVENANCE: true | ||