From 77cc5f92874777ae13051db65ca32f9a375056ec Mon Sep 17 00:00:00 2001 From: Markus Becker Date: Mon, 28 Sep 2026 15:59:33 +0200 Subject: [PATCH] Add GitHub Actions workflow to publish to PyPI on tag Build sdist and wheel and publish to PyPI via trusted publishing when a v* tag is pushed. Verify the tag matches the package version before building. Co-Authored-By: Claude Opus 4.8 --- .github/workflows/publish.yml | 55 +++++++++++++++++++++++++++++++++++ 1 file changed, 55 insertions(+) create mode 100644 .github/workflows/publish.yml diff --git a/.github/workflows/publish.yml b/.github/workflows/publish.yml new file mode 100644 index 00000000..8ce72b4d --- /dev/null +++ b/.github/workflows/publish.yml @@ -0,0 +1,55 @@ +name: Publish to PyPI + +on: + push: + tags: + - "v*" + +permissions: + contents: read + +jobs: + build: + name: Build distribution + runs-on: ubuntu-latest + steps: + - uses: actions/checkout@v4 + - name: Set up Python + uses: actions/setup-python@v5 + with: + python-version: "3.12" + - name: Verify tag matches package version + run: | + version="$(python setup.py --version)" + tag="${GITHUB_REF_NAME#v}" + if [ "$version" != "$tag" ]; then + echo "Tag $tag does not match package version $version" >&2 + exit 1 + fi + - name: Build sdist and wheel + run: | + python -m pip install --upgrade pip build + python -m build + - name: Upload distribution artifacts + uses: actions/upload-artifact@v4 + with: + name: dist + path: dist/ + + publish: + name: Publish to PyPI + needs: build + runs-on: ubuntu-latest + environment: + name: pypi + url: https://pypi.org/project/python-dali/ + permissions: + id-token: write + steps: + - name: Download distribution artifacts + uses: actions/download-artifact@v4 + with: + name: dist + path: dist/ + - name: Publish to PyPI + uses: pypa/gh-action-pypi-publish@release/v1