Skip to content

Release: build and rehearse the immutable v1.5.0 candidate #1027

Description

@jeffhuber

Part of #923 and #903.

Outcome

Produce the single immutable 1.5.0 candidate from the intended final public source commit, with accurate release notes and reproducible install, upgrade, disable, rollback, uninstall, package-inventory, and privacy evidence. This candidate is qualified by #918 and #920 before the unchanged source SHA is tagged and published through #923.

Dependencies

Scope

  • Set source/package identity to 1.5.0; update current-facing README/install/quickstart/roadmap/release-history text while preserving historical v1.4.x evidence.
  • Add v1.5 release notes and qualification record. Include PR Fix Graphify inventory limits and frontend test discovery #1007's four Graphify compatibility behaviors and instruct rebuild of affected/partial graphs.
  • Reconcile all release text to: build an immutable wheel from the final release commit, run private acceptance and canaries, then tag and publish the unchanged source SHA.
  • Build wheel and sdist once from a clean exact-SHA checkout; record SHA-256 and inspect inventory. Verify PR Fix Graphify inventory limits and frontend test discovery #1007 Graphify modules plus Slack: explicit private-workspace setup, readiness doctor and runbook #1024 Slack modules, hosted manifest, and documentation are present. Default dependencies remain Slack-free.
  • Rehearse a fresh default install, explicit Slack opt-in, 1.4.2 to 1.5.0 upgrade, disable/uninstall, and disposable package rollback to exact 1.4.2. Preserve operational rollback rules for live durable v2 state.
  • Pass release identity/readiness, package guards, privacy, lint, full tests, independent exact-head review, normal CI, and authoritative gate.

Acceptance

  • One release-prep PR with one writer and immutable exact-head evidence.
  • Source versions, CHANGELOG first versioned heading, README baseline, package manifest, release notes, and current installation docs agree on 1.5.0.
  • Candidate artifacts are bound to the release PR merge SHA with recorded digests and inspected contents.
  • Default install remains Slack-free and causes no Slack login, service, or network setup.
  • Explicit Slack setup/doctor works from the candidate wheel without claiming live readiness from an offline snapshot.
  • Fresh install, upgrade, rollback, disable, and uninstall rehearsals pass in disposable environments with state-preservation evidence.
  • Historical v1.4.x qualification artifacts remain unchanged.
  • CodeMower.com: single-workspace Slack OAuth installation and explicit policy binding #918 consumes this candidate for private administration/readiness evidence.
  • Slack: Devin dispatch, clarification, completion, and cancellation bridge #920 consumes this candidate for one completion and one confirmed-cancellation canary only after explicit numeric authorization.
  • Release: qualify and publish basic supervised Slack ingress in v1.5.0 #923 tags and publishes the unchanged source SHA only after those gates pass, then independently reinstalls the published package.

No paid provider work, tag, package publication, hosted deployment, or live Slack mutation belongs to the implementation PR for this issue.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions