robertdavidsmith/check-and-republish-packages

Scans other repos, potentially in other orgs, for workflows which ran the request-republish-package step on permitted branches. Downloads their Artifacts, checks that hashes are as expected and republishes them as GitHub packages.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
Runtime
Deprecated runtime
namedescriptionrequireddefault
source-ownerThe GitHub owner (organisation or individual) of the repos to scan.yes
source-repo-workflow-branchesA comma-separated list of repo/workflow/branch combinations to search for artifact-producing workflow runs.yes
source-tokenA GitHub auth token which has access to read workflow information, including logs and artifacts, from the source owner and repo(s).yes
package-push-userA GitHub user which has access to list and upload packages to the repo where this action is running.nosvc-gh-packagemanager
package-push-tokenA GitHub auth token which has access to list and upload packages to the repo where this action is running.yes

no outputs