feat(desktop): 正式发行构建证明与 SHA256 公示 - #135
Merged
Merged
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
SFMC Desktop 0.1.1 正式发行增加 GitHub Artifact Attestations 与 SHA256 公示,供用户验证 Windows x64 安装包和 ZIP 的构建来源、源码标签和文件摘要。
发行工作流按标签核对桌面和已发布平台版本,生成 GitHub Artifact Attestations,并在 Release 公示每份材料的 SHA256。证明、清单与校验文件一并上传;本次客户端使用发行页手动更新。README 与中文文档提供安装、SSH 接入、摘要/构建证明校验命令和界面截图。管理协议包加入公开包构建、打包与版本清单。
Windows 构建和发布阶段均核对清单与实际材料;只有标签发布任务获得 OIDC/证明写入权限。构建证明 action 固定到 v4.2.2 对应提交。摘要和证明验证通过后才上传发行材料。
验证:十个公开包 pack 成功;桌面、CLI、管理协议类型检查通过;仓库 verify 12/12;文档站构建通过;手动更新 check/download/install 分支通过。本机 Windows 与 SSH Windows 的真实 BDS/数据服务、指标和守护进程重连已验收并恢复原服务状态。Linux 远程环境及游戏内业务流程仍需实际环境验收。