Skip to content

release: prepare QuantumD 0.7.5a0 for production PyPI - #19

Merged
WindDAnalytics merged 1 commit into
mainfrom
release/production-pypi-0.7.5a0
Aug 3, 2026
Merged

release: prepare QuantumD 0.7.5a0 for production PyPI#19
WindDAnalytics merged 1 commit into
mainfrom
release/production-pypi-0.7.5a0

Conversation

@WindDAnalytics

Copy link
Copy Markdown
Owner

Purpose

Prepare QuantumD 0.7.5a0 for its first production PyPI release.

Primary experience

python -m pip install quantumd
quantumd quickstart my-first-quantumd-project

A manually managed virtual environment is optional. pipx and uv tool
paths are documented for protected system Python installations.

Supply-chain controls

  • production PyPI Trusted Publishing through GitHub OIDC
  • exact authorized workflow .github/workflows/publish-pypi.yml
  • protected GitHub environment pypi
  • separated build and publish jobs
  • no stored PyPI password or long-lived API token
  • tag/version contract, source tests, wheel inspection, isolated installation,
    fail-closed validation, and KMS-attested release demonstration

Release trigger

Merging this PR does not publish. Publishing occurs only when the deliberate
v0.7.5-alpha tag is pushed after merge.

@WindDAnalytics
WindDAnalytics merged commit 064c2ed into main Aug 3, 2026
9 checks passed
@WindDAnalytics
WindDAnalytics deleted the release/production-pypi-0.7.5a0 branch August 3, 2026 06:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant