mirror of
https://github.com/CopilotKit/CopilotKit.git
synced 2026-09-14 16:26:20 +08:00
ecf79393e4
- Add top-level 'permissions: contents: read' — the workflow performs no repo writes, so declaring the minimum explicitly closes a default-token hardening gap. - Serialize publishes with concurrency: group: vscode-extension-publish, cancel-in-progress: false. Two rapid pushes to main used to race straight into vsce publish; the second failed noisily on duplicate version or, worse, published out of order. - Remove the 'Lint' step. The Nx target 'copilotkit-vscode-extension:lint' doesn't exist and there's no 'lint' npm script either, so the step always failed — 'continue-on-error: true' just hid it while never actually linting anything. Re-add once a real lint target lands. check-binaries.sh: - Replace '[ ] && exit 1 / exit 0' with an explicit 'if [ ]; then exit 1; fi; exit 0' block. Under 'set -e' the old form was safe only because the trailing 'exit 0' existed; the explicit form is robust regardless of what follows.