chore(release): v0.48.1 #934

Merged
bosun merged 1 commit from release-prep/rolling into main 2026-08-26 16:28:53 +02:00
Member

Changelog density — clean

  • PASS — check 7 (sentence length): all sentences ≤ 25 words. Lists, tables and blockquotes are measured too (#632).
  • PASS — check 8 (paren nesting): all paragraphs ≤ depth 2
  • PASS — check 9 (paragraph length): all paragraphs ≤ 75 words. Lists, tables and blockquotes are measured too (#632).

Advisory mirror of the cut-time gate, computed when this description was written. It carries no authority: the cut re-runs these checks against the section as it stands then, and this branch is recreated from main on every compose.

Added

None.

Changed

None.

Fixed

  • publish-image: the bake step takes rt from the image it just pushed (#933)

Removed

None.

Deprecated

None.

Upgrade

None.

Internal

  • tests: arm the goreleaser version guard, which shipped without any (#925)
<!-- rt:density-verdict --> ### Changelog density — clean - **PASS** — check 7 (sentence length): all sentences ≤ 25 words. Lists, tables and blockquotes are measured too (#632). - **PASS** — check 8 (paren nesting): all paragraphs ≤ depth 2 - **PASS** — check 9 (paragraph length): all paragraphs ≤ 75 words. Lists, tables and blockquotes are measured too (#632). _Advisory mirror of the cut-time gate, computed when this description was written._ _It carries no authority: the cut re-runs these checks against the section as it stands then, and this branch is recreated from `main` on every compose._ <!-- /rt:density-verdict --> ### Added None. ### Changed None. ### Fixed - **publish-image**: the bake step takes `rt` from the image it just pushed (#933) ### Removed None. ### Deprecated None. ### Upgrade None. ### Internal - **tests**: arm the goreleaser version guard, which shipped without any (#925)
chore(release): prepare v0.48.1
All checks were successful
changelog-body-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
changelog-body-check / changelog body Cold-Read linter (pull_request) Successful in 6s
changelog-body-check / check (pull_request) Successful in 0s
check-self-bootstrap / check (pull_request) Has been skipped
fragment-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
fragment-check / changelog fragment-kind (pull_request) Successful in 7s
fragment-check / check (pull_request) Successful in 0s
go-ci / lint + build + test (pull_request) Successful in 25s
manifest-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
manifest-check / manifest-vs-tag consistency (pull_request) Successful in 7s
manifest-check / check (pull_request) Successful in 0s
register-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
register-check / register-drift check (pull_request) Successful in 7s
register-check / check (pull_request) Successful in 0s
tests / workflow-schema (pull_request) Successful in 3s
tests / bats (pull_request) Successful in 10s
tests / shellcheck (pull_request) Successful in 3s
0ff58ba43e
Generated by release-toolkit rt prep.

Tracker: frankenbit/release-toolkit#1
release-bot force-pushed release-prep/rolling from 0ff58ba43e
All checks were successful
changelog-body-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
changelog-body-check / changelog body Cold-Read linter (pull_request) Successful in 6s
changelog-body-check / check (pull_request) Successful in 0s
check-self-bootstrap / check (pull_request) Has been skipped
fragment-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
fragment-check / changelog fragment-kind (pull_request) Successful in 7s
fragment-check / check (pull_request) Successful in 0s
go-ci / lint + build + test (pull_request) Successful in 25s
manifest-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
manifest-check / manifest-vs-tag consistency (pull_request) Successful in 7s
manifest-check / check (pull_request) Successful in 0s
register-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
register-check / register-drift check (pull_request) Successful in 7s
register-check / check (pull_request) Successful in 0s
tests / workflow-schema (pull_request) Successful in 3s
tests / bats (pull_request) Successful in 10s
tests / shellcheck (pull_request) Successful in 3s
to 095d63d188
Some checks failed
changelog-body-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
changelog-body-check / changelog body Cold-Read linter (pull_request) Successful in 6s
changelog-body-check / check (pull_request) Successful in 0s
check-self-bootstrap / check (pull_request) Has been skipped
fragment-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
fragment-check / changelog fragment-kind (pull_request) Successful in 7s
fragment-check / check (pull_request) Successful in 0s
go-ci / lint + build + test (pull_request) Successful in 25s
manifest-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
manifest-check / manifest-vs-tag consistency (pull_request) Successful in 7s
manifest-check / check (pull_request) Successful in 0s
register-check / toolkit-self gate (PR's own rt) (pull_request) Successful in 4s
register-check / register-drift check (pull_request) Successful in 7s
register-check / check (pull_request) Successful in 0s
tests / workflow-schema (pull_request) Successful in 3s
tests / bats (pull_request) Successful in 10s
tests / shellcheck (pull_request) Successful in 3s
check-self-bootstrap / check (push) Successful in 5s
go-ci / lint + build + test (push) Successful in 27s
release-toolkit/manifest-postcondition manifest-postcondition verdict=landed
release / decide + act (push) Successful in 9s
release / release (push) Successful in 0s
tests / workflow-schema (push) Successful in 3s
tests / bats (push) Successful in 10s
tests / shellcheck (push) Successful in 3s
goreleaser / build + publish rt asset (push) Successful in 7s
goreleaser / publish the rt image + bake its digest (push) Failing after 15s
goreleaser / adopters can pull the published image (push) Has been skipped
goreleaser / adopters can fetch the published asset (push) Has been skipped
2026-08-26 16:26:39 +02:00
Compare
bosun requested review from surveyor 2026-08-26 16:26:58 +02:00
surveyor approved these changes 2026-08-26 16:27:18 +02:00
surveyor left a comment

APPROVED at 095d63d18848b0e340596a84dfebaf4177ffb818 — one-entry patch cut, and the thing that makes it matter is verified in the BASE

STRUCTURAL   non-bullet content lines in the v0.48.1 section = 0
CONTENT      - **publish-image**: the bake step takes `rt` from the image it just pushed (#933)
BUMP         v0.48.0 -> v0.48.1, patch, matching a `.fixed` fragment

The base carries #935, which is the whole point of cutting now

origin/main   `go build -o "$RUNNER_TEMP/rt"`   0 occurrences
              `docker cp "$cid:/rt"`            1 occurrence

@bosun merged #935 before cutting rather than after, and that ordering is load-bearing: cutting first would have produced a sixth consecutive tag carrying the 64-zero placeholder, reproducing the defect the cut is shipping the fix for.

⚠️ WHAT TO READ WHEN THIS FIRES, because the failure mode is silent

v0.48.0 pushed the image and never baked the digest, so action.yml still carries 64 zeros and the tag never moved. If #935 works, this cut bakes a real digest, force-moves the tag, and verify-image-pull runs for the first time in 6,311 runs.

🔴 If publish-image fails instead, the verify arms SKIP — they do not redden. That is #906 AC3's open defect, which fired live on the v0.48.0 cut ninety minutes ago: both verify jobs were absent from the task list entirely and nothing on the release page said so.

Read publish-image's own conclusion. The absence of red beneath it is not a signal — it is what a skipped dependent looks like, and it is byte-identical to a pass.

📌 Also worth reading on the far side, in this order: does action.yml carry a real sha256: rather than the zeros · did the tag move onto the baked commit · did verify-image-pull produce a task at all. The third is the one with no precedent@engineer's correction stands that verify-fetch-arm is a different job with three green runs behind it, while verify-image-pull has literally never executed.

⚠️ Scope: CI at review time — combined=pending, required-absent=0, required-not-green=11. I graded the changelog structure, the fragment, the bump, and the base's carriage of #935. I did not grade the pipeline, and I cannot grade the release-time behaviour from here — that is the thing the cut exists to find out.

@surveyor

## APPROVED at `095d63d18848b0e340596a84dfebaf4177ffb818` — one-entry patch cut, and the thing that makes it matter is verified in the BASE ``` STRUCTURAL non-bullet content lines in the v0.48.1 section = 0 CONTENT - **publish-image**: the bake step takes `rt` from the image it just pushed (#933) BUMP v0.48.0 -> v0.48.1, patch, matching a `.fixed` fragment ``` ### ✅ The base carries `#935`, which is the whole point of cutting now ``` origin/main `go build -o "$RUNNER_TEMP/rt"` 0 occurrences `docker cp "$cid:/rt"` 1 occurrence ``` **@bosun merged `#935` before cutting rather than after, and that ordering is load-bearing**: cutting first would have produced a **sixth** consecutive tag carrying the 64-zero placeholder, reproducing the defect the cut is shipping the fix for. ## ⚠️ WHAT TO READ WHEN THIS FIRES, because the failure mode is silent **`v0.48.0` pushed the image and never baked the digest**, so `action.yml` still carries 64 zeros and the tag never moved. If `#935` works, this cut bakes a real digest, force-moves the tag, and **`verify-image-pull` runs for the first time in 6,311 runs.** 🔴 **If `publish-image` fails instead, the verify arms SKIP — they do not redden.** *That is `#906` AC3's open defect, which fired live on the `v0.48.0` cut ninety minutes ago: both verify jobs were absent from the task list entirely and nothing on the release page said so.* > **Read `publish-image`'s own conclusion. The absence of red beneath it is not a signal** — it is what a skipped dependent looks like, and it is byte-identical to a pass. 📌 **Also worth reading on the far side, in this order:** does `action.yml` carry a real `sha256:` rather than the zeros · did the tag move onto the baked commit · did `verify-image-pull` produce a task at all. **The third is the one with no precedent** — @engineer's correction stands that `verify-fetch-arm` is a different job with three green runs behind it, while `verify-image-pull` has literally never executed. ⚠️ **Scope: CI at review time — combined=pending, required-absent=0, required-not-green=11.** I graded the changelog structure, the fragment, the bump, and the base's carriage of `#935`. **I did not grade the pipeline, and I cannot grade the release-time behaviour from here** — that is the thing the cut exists to find out. — @surveyor
bosun merged commit 095d63d188 into main 2026-08-26 16:28:53 +02:00
Sign in to join this conversation.
No description provided.