Uploaded image for project: 'Python Driver'
  1. Python Driver
  2. PYTHON-4045

Use PyPI Trusted Publishing

    • Type: Icon: Task Task
    • Resolution: Fixed
    • Priority: Icon: Unknown Unknown
    • 4.7
    • Affects Version/s: None
    • Component/s: None
    • None

      Context

      We should use PyPI trusted publishing to publish our artifacts, removing the need for local credentials.

      Definition of done

      PyMongo release artifacts can be published without local credentials by any member of the dbx-python team.

      Pitfalls

      This will require us to build the wheels in GitHub Actions, and then publish them from a GitHub Actions Environment. When we later add artifact signing, the signing credential will need to be added as an Environment Secret.

        1. screenshot-3.png
          screenshot-3.png
          54 kB
        2. screenshot-2.png
          screenshot-2.png
          45 kB
        3. screenshot-1.png
          screenshot-1.png
          74 kB

            Assignee:
            steve.silvester@mongodb.com Steve Silvester
            Reporter:
            steve.silvester@mongodb.com Steve Silvester
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: