Repository navigation
fix: publish release charts to native Cloudsmith Helm - #30
Merged
Merged
Conversation
tmccoy14
approved these changes
Sep 25, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Release mirroring stops before uploading because the authenticated Helm OCI endpoint returns HTTP 500 during destination preflight. Publish the verified release chart archives as native Helm packages in
eqtylab/prodand install them throughhttps://dl.cloudsmith.io/basic/eqtylab/prod/helm/charts/.Validation: 31 release unit tests, six govctl tests, actionlint on both release workflows, and git diff --check pass. With explicit approval, uploaded auth-service 1.2.1 as a native Helm package (ID
14u0mZRx5Cmo), pulled it via the Helm repository, and verified SHA-256b8990a667c424942c509ca8bbbaea2feca53472bac486b02e439128badff7467. Repeating the publisher reused the existing package. Read-only validation of saved 1.2.0 and 1.2.1 artifacts against live releases and native Helm/raw destinations passed.After merge, start a fresh run using the fixed workflow on main:
For historical releases, substitute the version while retaining
--ref main. Re-running an old workflow run uses its old code. Full OIDC publication remains to be verified by the main-branch run; the native test package will be reused. The earlier approved OCI diagnostic package is left untouched.