From b098132595930d5c2642f0a92c241736aa16f974 Mon Sep 17 00:00:00 2001 From: xavierk Date: Tue, 29 Sep 2026 04:32:54 +0530 Subject: [PATCH] fix(ci): authenticate XBPS repository publish Set the existing Fenris commit identity and pass the Gitea publish token to Git without storing credentials on the runner. --- .gitea/workflows/release.yml | 11 +++++++++++ 1 file changed, 11 insertions(+) diff --git a/.gitea/workflows/release.yml b/.gitea/workflows/release.yml index 717a71d..b6bb9a7 100644 --- a/.gitea/workflows/release.yml +++ b/.gitea/workflows/release.yml @@ -205,8 +205,19 @@ jobs: - name: Publish XBPS to distribution repository id: publish-xbps if: ${{ github.event.inputs.publish_xbps == true || github.event.inputs.publish_xbps == 'true' }} + env: + GITEA_PUBLISH_TOKEN: ${{ secrets.GITEAPACKAGETOKEN }} run: | set -euo pipefail + if [ -z "${GITEA_PUBLISH_TOKEN}" ]; then + echo "::error::GITEAPACKAGETOKEN repository secret is not configured" + exit 1 + fi + git config user.name "xavierk" + git config user.email "xavierk@bongbetic.com" + export GIT_CONFIG_COUNT=1 + export GIT_CONFIG_KEY_0='http.https://git.bongbetic.com/.extraheader' + export GIT_CONFIG_VALUE_0="Authorization: token ${GITEA_PUBLISH_TOKEN}" VERSION=${{ steps.version.outputs.version }} XBPS_FILE="fenris-${VERSION}_1.x86_64.xbps" if [ ! -f "${XBPS_FILE}" ]; then