Skip to content

Use shared workflows v7 for Maven 3.10 publishing - #133

Closed
bertysentry wants to merge 3 commits into
mainfrom
fix/pin-maven-3.9.16
Closed

bertysentry wants to merge 3 commits into
mainfrom
fix/pin-maven-3.9.16

Conversation

@bertysentry

@bertysentry bertysentry commented Oct 8, 2026 •

Copy link
Copy Markdown
Contributor

Summary

Use the released MetricsHub shared workflows v7 for snapshot publishing, replacing the temporary Maven 3.9.16 pin.

  • Change the snapshot deploy caller from e601a107f80707d7bc39918a63ecad47f6f4fc65 to @v7.
  • Verified v7 resolves to 4312439c5c819b0508c6195ff171c869ea54a390 and includes Declare Central as an origin of server central for Maven 3.10 workflows#36.
  • The shared workflow declares https://central.sonatype.com as an origin of server central, preserving Maven 3.10 origin-scoped credentials.
  • Preserve the main-only trigger, JDK 17 input and inherited secrets. The existing PR build and separate release workflows are unchanged.

Validation

  • actionlint 1.7.12 passes for the changed caller and the v7 deployment workflow.
  • YAML/ref/trigger assertions and git diff --check pass.
  • Executed the exact v7 origin script against synthetic settings: the origin is inserted into server central only, credential placeholders are preserved, and a missing central server fails.
  • Local mvn formatter:format was attempted but blocked before execution because repo.maven.apache.org could not be resolved while fetching org.metricshub:oss-parent:5. Local mvn verify site was not reached.
  • The nonpublishing Maven Build passed for head aa4f03bc793d67f2616cc31d56dabf5f3e978476. This PR build does not exercise IPMI's main-only snapshot deployment.
  • Separate exact-head v7 deployments have passed for simple-http-java and jflat, with no credentialScope=id override. Both ran on ubuntu-24.04 image 20261004.327.1, whose included-software manifest lists Maven 3.10.0.

Rollout

The shared fix is already released; the superseded MetricsHub/workflows#35 pin is no longer a dependency. This remains a draft. No merge, release, tag change or manual deployment was performed.

Compared with the previous v4 caller, v7 also contains released action updates: checkout v7, setup-java v6 and setup-node v7.

@bertysentry bertysentry changed the title Use Maven 3.9.16 for snapshot publishing Use shared workflows v7 for Maven 3.10 publishing Oct 8, 2026
@bertysentry
bertysentry marked this pull request as ready for review October 8, 2026 16:59
@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Oct 8, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-10-08T17:00:18.632807Z 7817b98 Draft marked ready
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@bertysentry bertysentry closed this Oct 8, 2026
@bertysentry
bertysentry deleted the fix/pin-maven-3.9.16 branch October 8, 2026 17:43
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant