erldistpy/docs
russell@unturf.com 9b3039fa6f
docs: PyPI Trusted Publishing (OIDC) migration plan
When we're ready to drop the twine<6 + setuptools<77 pins on the
build runner, this doc is the recipe. Covers:

  - PyPI side: registering a pending publisher per project
  - GitLab side: id_tokens: PYPI_ID_TOKEN: aud: pypi
  - What pins to drop after migration
  - Why coordinated across all four python/* repos in one go

Today we ship via classic ~/.pypirc on the build runner. Trusted
Publishing replaces that with short-lived OIDC tokens minted per
pipeline. Per-project scope, per-pipeline expiry, no long-lived
secret on the runner.
2026-06-16 14:20:00 -04:00
..
etf_vectors.erl phase 0 + 1: repo bones and ETF codec 2026-06-16 10:39:01 -04:00
PYPI-TRUSTED-PUBLISHING.md docs: PyPI Trusted Publishing (OIDC) migration plan 2026-06-16 14:20:00 -04:00
ROADMAP.md roadmap: mark phase 7 done (unfeed ErlangDistTransport) 2026-06-16 12:25:55 -04:00