Skip to content

Ship the licence in release tarballs - #40

Merged
Zenofex merged 1 commit into
mainfrom
fix-release-license
Oct 7, 2026
Merged

Zenofex merged 1 commit into
mainfrom
fix-release-license

Conversation

@Zenofex

@Zenofex Zenofex commented Oct 7, 2026

Copy link
Copy Markdown
Contributor

The packaging steps copied ../LICENSE, which points outside the checkout — the step runs at the repo root, where the file is LICENSE. The path never matched, and this turned the miss into a log line nobody reads:

cp ../LICENSE dist/ 2>/dev/null || echo "LICENSE not found at repo root; skipping"

The Windows step had the same wrong path wrapped in a Test-Path guard, hiding it the same way.

So every release has shipped with no licence file, while this workflow's own header claims it "bundles each binary with LICENSE + README". Verified against the published 0.13.0 tarball:

$ tar tzf bootintel-v0.13.0-x86_64-linux.tar.gz
./
./README.md
./bootintel

The repo is Apache-2.0, and §4(a) requires giving recipients a copy of the licence with the work, so this is a distribution defect rather than a tidiness one.

Found while verifying the 0.14.0 draft before publishing. The draft is being rebuilt on this fix rather than published as-is.

Both copies are now unguarded — a missing licence should fail the release, since tolerating the miss is what kept it invisible for six releases.

🤖 Generated with Claude Code

The packaging steps copied `../LICENSE`, which points outside the checkout: the
step runs at the repo root, where the file is `LICENSE`. The path never matched,
and `2>/dev/null || echo "LICENSE not found at repo root; skipping"` turned that
into a log line nobody reads. The Windows step had the same path wrapped in a
`Test-Path` guard, which hid it the same way.

So every release has shipped with no licence file while this workflow's own
header claims it "bundles each binary with LICENSE + README". Verified against
the published 0.13.0 x86_64-linux tarball: `./`, `./README.md`, `./bootintel`
and nothing else. The repo is Apache-2.0, and section 4(a) requires giving
recipients a copy of the licence with the work, so this is a distribution
defect rather than a tidiness one.

Found while verifying the 0.14.0 draft before publishing it. The draft is being
rebuilt on this fix rather than published as-is.

Both copies are now unguarded. A missing licence should fail the release, since
tolerating the miss is what kept it invisible for six releases.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
@Zenofex
Zenofex merged commit 1a8ff1a into main Oct 7, 2026
11 checks passed
@Zenofex
Zenofex deleted the fix-release-license branch October 7, 2026 11:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant