• Icon: Task Task
    • Resolution: Fixed
    • Icon: Normal Normal
    • 2.13.1
    • 2.13
    • Packaging & Deployment
    • None

      Packaging for PyPI on Github Actions failed with

      Invalid attestations supplied during upload: Could not verify the      
      uploaded artifact using the included attestation: Verification failed: 
      Certificate's Build Config URI                                         
      (<Extension(oid=<ObjectIdentifier(oid=1.3.6.1.4.1.57264.1.18,          
      name=Unknown OID)>, critical=False,                                    
      value=<UnrecognizedExtension(oid=<ObjectIdentifier(oid=1.3.6.1.4.1.5726
      4.1.18, name=Unknown OID)>,                                            
      value=b'\x0cYhttps://github.com/metabrainz/picard/.github/workflows/pac
      kage.yml@refs/tags/release-2.13')>)>) does not match expected Trusted  
      Publisher (package-pypi.yml @ metabrainz/picard)

      Fixed in https://github.com/metabrainz/picard/commit/893dca5be4fe5fad8b1a66131f04bca1231df51d

          Loading...

            • Icon: Task Task
            • Resolution: Fixed
            • Icon: Normal Normal
            • 2.13.1
            • 2.13
            • Packaging & Deployment
            • None

              Packaging for PyPI on Github Actions failed with

              Invalid attestations supplied during upload: Could not verify the      
              uploaded artifact using the included attestation: Verification failed: 
              Certificate's Build Config URI                                         
              (<Extension(oid=<ObjectIdentifier(oid=1.3.6.1.4.1.57264.1.18,          
              name=Unknown OID)>, critical=False,                                    
              value=<UnrecognizedExtension(oid=<ObjectIdentifier(oid=1.3.6.1.4.1.5726
              4.1.18, name=Unknown OID)>,                                            
              value=b'\x0cYhttps://github.com/metabrainz/picard/.github/workflows/pac
              kage.yml@refs/tags/release-2.13')>)>) does not match expected Trusted  
              Publisher (package-pypi.yml @ metabrainz/picard)

              Fixed in https://github.com/metabrainz/picard/commit/893dca5be4fe5fad8b1a66131f04bca1231df51d

                    outsidecontext Philipp Wolfer
                    outsidecontext Philipp Wolfer
                    Votes:
                    0 Vote for this issue
                    Watchers:
                    1 Start watching this issue

                      Created:
                      Updated:
                      Resolved:

                        Version Package
                        2.13.1

                          outsidecontext Philipp Wolfer
                          outsidecontext Philipp Wolfer
                          Votes:
                          0 Vote for this issue
                          Watchers:
                          1 Start watching this issue

                            Created:
                            Updated:
                            Resolved:

                              Version Package
                              2.13.1