Skip to content

Commit 105b1b6

Browse files
committed
release: use GITHUB_TOKEN + contents:write, fail loudly on upload errors
The 4 chip plugin repos didn't have a working ACCESS_TOKEN secret — gh release create was 401ing. Switch to the auto-provided GITHUB_TOKEN (with explicit contents:write permission) so no per-repo PAT setup is needed. Also add curl --fail-with-body so socalabs.com returning a non-2xx fails the job instead of silently passing.
1 parent 22017ba commit 105b1b6

2 files changed

Lines changed: 4 additions & 2 deletions

File tree

‎.github/workflows/release.yaml‎

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -67,6 +67,8 @@ jobs:
6767
needs: build
6868
runs-on: ubuntu-latest
6969
timeout-minutes: 30
70+
permissions:
71+
contents: write
7072
steps:
7173
- uses: actions/checkout@v4
7274
- name: Download Artifacts
@@ -75,5 +77,5 @@ jobs:
7577
run: ./release.sh
7678
shell: bash
7779
env:
78-
GH_TOKEN: ${{ secrets.ACCESS_TOKEN }}
80+
GH_TOKEN: ${{ secrets.GITHUB_TOKEN }}
7981
APIKEY: ${{ secrets.APIKEY }}

‎release.sh‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -39,7 +39,7 @@ PLUGIN=rp2a03
3939
for f in "./Binaries Linux"/*.deb \
4040
"./Binaries Windows"/*.exe \
4141
"./Binaries macOS"/*.pkg; do
42-
curl -sS -F "files=@${f}" \
42+
curl -sS --fail-with-body -F "files=@${f}" \
4343
-F "plugin=${PLUGIN}" \
4444
-F "version=${VER}" \
4545
-F "changelog=${NOTES}" \

0 commit comments

Comments
 (0)