Skip to content

ci: notify the catalog using a scoped GitHub App - #2

Merged
showxu merged 1 commit into
mainfrom
codex/catalog-app-notification
Sep 29, 2026
Merged

showxu merged 1 commit into
mainfrom
codex/catalog-app-notification

Conversation

@showxu

@showxu showxu commented Sep 29, 2026

Copy link
Copy Markdown
Contributor

Release and manual notifications now use the organization-owned catalog App and the reviewed central action. Each run receives a temporary token scoped to website Actions write, revoked on job completion. Sender credentials are limited to authorized official plugin repositories.

Validation: actionlint and git diff checks pass; required package CI covers the unchanged product inputs. This workflow change preserves published plugin bytes and versions.

@showxu
showxu merged commit de3a275 into main Sep 29, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant