f07c15972c90f48eb60909a915dd9659d035451d
3
Commits
| Author | SHA1 | Message | Date | |
|---|---|---|---|---|
|
|
f07c15972c |
chore(deps): bump fastlane from 2.237.0 to 2.238.0 (#326)
Bumps [fastlane](https://github.com/fastlane/fastlane) from 2.237.0 to 2.238.0. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/fastlane/fastlane/releases">fastlane's releases</a>.</em></p> <blockquote> <h2>2.238.0 Improvements</h2> <ul> <li>[ci] support releases with PRs that were deleted (or users) (<a href="https://redirect.github.com/fastlane/fastlane/issues/30105">#30105</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[pilot] Match groups by either name or id (<a href="https://redirect.github.com/fastlane/fastlane/issues/30104">#30104</a>) via Alexander Chapliuk (<a href="https://github.com/krin-san"><code>@krin-san</code></a>)</li> <li>[update_project_team] add support for sdk conditionals (<a href="https://redirect.github.com/fastlane/fastlane/issues/30142">#30142</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>harden: detected non-static command inside ` in... (<a href="https://redirect.github.com/fastlane/fastlane/issues/30148">#30148</a>) via Anupam Mediratta (<a href="https://github.com/anupamme"><code>@anupamme</code></a>)</li> <li>[fastlane_core] Create a unique package directory for non-macOS uploads (<a href="https://redirect.github.com/fastlane/fastlane/issues/30144">#30144</a>) via Victor Amorim dos Santos (<a href="https://github.com/victoramsantos"><code>@victoramsantos</code></a>)</li> <li>[gem] move to webrick 1.9.x (<a href="https://redirect.github.com/fastlane/fastlane/issues/30135">#30135</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[gem] upgrade 'terminal-table' to drop monkey patch (<a href="https://redirect.github.com/fastlane/fastlane/issues/30137">#30137</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[core] Fix video resolution parsing when audio track precedes video track (<a href="https://redirect.github.com/fastlane/fastlane/issues/30143">#30143</a>) via Thomas Walther (<a href="https://github.com/tcwalther"><code>@tcwalther</code></a>)</li> <li>[gym] Fix Mac Catalyst package type detection when catalyst_platform is not set (<a href="https://redirect.github.com/fastlane/fastlane/issues/29829">#29829</a>) via Josh Holtz (<a href="https://github.com/joshdholtz"><code>@joshdholtz</code></a>)</li> <li>[deliver/pilot] change instruction on how to run iTMSTransporter (<a href="https://redirect.github.com/fastlane/fastlane/issues/21155">#21155</a>) via Merlin Ran (<a href="https://github.com/merlinran"><code>@merlinran</code></a>)</li> <li>[gem] move to sinatra 4 (<a href="https://redirect.github.com/fastlane/fastlane/issues/30134">#30134</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[action][spm] add <code>--skip-update</code> (<a href="https://redirect.github.com/fastlane/fastlane/issues/21127">#21127</a>) via Atsuto Yamashita (<a href="https://github.com/att55"><code>@att55</code></a>)</li> <li>Fix precheck copyright rule wording (<a href="https://redirect.github.com/fastlane/fastlane/issues/19500">#19500</a>) via Andreas Ganske (<a href="https://github.com/ChaosCoder"><code>@ChaosCoder</code></a>)</li> <li>docs: add detailed notation of what metrics collected (<a href="https://redirect.github.com/fastlane/fastlane/issues/30132">#30132</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>Bump actions/labeler from 6 to 7 (<a href="https://redirect.github.com/fastlane/fastlane/issues/30133">#30133</a>) via dependabot[bot] (<a href="https://github.com/dependabot"><code>@dependabot</code></a>[bot])</li> <li>[upload_symbols_to_crashlytics] Adds option to let the action fail when an upload fails (<a href="https://redirect.github.com/fastlane/fastlane/issues/29700">#29700</a>) via Tobias Kreß (<a href="https://github.com/Myrronth"><code>@Myrronth</code></a>)</li> <li>[deliver] add support for social media rating keys (<a href="https://redirect.github.com/fastlane/fastlane/issues/30128">#30128</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[core] Support for Ruby 4 (+ testing) (<a href="https://redirect.github.com/fastlane/fastlane/issues/29849">#29849</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[register_devices] Ignore blank lines and comment lines in devices_file (<a href="https://redirect.github.com/fastlane/fastlane/issues/30129">#30129</a>) via David Cordero (<a href="https://github.com/dcordero"><code>@dcordero</code></a>)</li> <li>[core] detect installed Developer ID intermediate certificates by their common name (<a href="https://redirect.github.com/fastlane/fastlane/issues/30126">#30126</a>) via Rinat Kutuev (<a href="https://github.com/ReilganInt"><code>@ReilganInt</code></a>)</li> <li>[core] move to xcodeproj 1.28.1 (from 1.27.0) (<a href="https://redirect.github.com/fastlane/fastlane/issues/30124">#30124</a>) via Nuno de Carvalho (<a href="https://github.com/nmcc24"><code>@nmcc24</code></a>)</li> <li>[core] normalize FastlaneSwiftRunner.xcodeproj plist quoting (<a href="https://redirect.github.com/fastlane/fastlane/issues/30125">#30125</a>) via Nuno de Carvalho (<a href="https://github.com/nmcc24"><code>@nmcc24</code></a>)</li> <li>[register_devices] Register devices normalization for UDIDs. (<a href="https://redirect.github.com/fastlane/fastlane/issues/29981">#29981</a>) via Muhammet Ilendemli (<a href="https://github.com/ilendemli"><code>@ilendemli</code></a>)</li> <li>[crashlytics] improve logging during error (<a href="https://redirect.github.com/fastlane/fastlane/issues/30077">#30077</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[setup_ci] Add option to opt out of setting the default keychain (<a href="https://redirect.github.com/fastlane/fastlane/issues/30121">#30121</a>) via Eyüp Can Akman (<a href="https://github.com/eyupcanakman"><code>@eyupcanakman</code></a>)</li> <li>[snapshot] Open the requested simulator for non-headless runs (<a href="https://redirect.github.com/fastlane/fastlane/issues/30119">#30119</a>) via huven (<a href="https://github.com/huven"><code>@huven</code></a>)</li> <li>[core] improve operating_system detection (<a href="https://redirect.github.com/fastlane/fastlane/issues/30118">#30118</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[core] fix: upgrade yard to >= 0.9.42 (CVE-2026-41493) (<a href="https://redirect.github.com/fastlane/fastlane/issues/30117">#30117</a>) via OrbisAI Security (<a href="https://github.com/orbisai0security"><code>@orbisai0security</code></a>)</li> <li>[core] move to Faraday 2 (<a href="https://redirect.github.com/fastlane/fastlane/issues/30089">#30089</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> <li>[docs] clarify platform resolution behavior (<a href="https://redirect.github.com/fastlane/fastlane/issues/22185">#22185</a>) via Douglas Hill (<a href="https://github.com/douglashill"><code>@douglashill</code></a>)</li> <li>[core] fix crash when uploading large <code>.pkg</code> by using <code>Digest::MD5.file</code> instead of <code>Digest::MD5.hexdigest</code> (<a href="https://redirect.github.com/fastlane/fastlane/issues/21999">#21999</a>) via reflexing (<a href="https://github.com/reflexing"><code>@reflexing</code></a>)</li> <li>[docs] fix a missing negation in <code>pilot</code> error message (<a href="https://redirect.github.com/fastlane/fastlane/issues/22331">#22331</a>) via Gemma Barlow (<a href="https://github.com/gemmakbarlow"><code>@gemmakbarlow</code></a>)</li> <li>[notarize] Fix erroring out with <code>bundle_id</code> parameter being absent (<a href="https://redirect.github.com/fastlane/fastlane/issues/29736">#29736</a>) via Timur Sharifianov (<a href="https://github.com/Scvairy"><code>@Scvairy</code></a>)</li> <li>[metrics] move to GA4 and improve metrics (<a href="https://redirect.github.com/fastlane/fastlane/issues/30111">#30111</a>) via Connor Tumbleson (<a href="https://github.com/iBotPeaches"><code>@iBotPeaches</code></a>)</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/fastlane/fastlane/commit/38d0ec404332cce7a4833881eee343e9de91700c"><code>38d0ec4</code></a> Version bump to 2.238.0 (<a href="https://redirect.github.com/fastlane/fastlane/issues/30151">#30151</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/d967cd80625e950b39668ec272f5530bc56c60df"><code>d967cd8</code></a> [ci] support releases with PRs that were deleted (or users) (<a href="https://redirect.github.com/fastlane/fastlane/issues/30105">#30105</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/4eadc97560f1d798306e608fd33ff3045841ad8f"><code>4eadc97</code></a> [pilot] Match groups by either name or id (<a href="https://redirect.github.com/fastlane/fastlane/issues/30104">#30104</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/a43b8b8bfdf06737f49b2a48360b78ab88126fe5"><code>a43b8b8</code></a> [update_project_team] add support for sdk conditions (<a href="https://redirect.github.com/fastlane/fastlane/issues/30142">#30142</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/f1568f9b2069df1551e8286c4c52be6b8823bc98"><code>f1568f9</code></a> [fastlane_core] harden plugin_scores subshell usage (<a href="https://redirect.github.com/fastlane/fastlane/issues/30148">#30148</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/25026b9be2deb9df1de0675215b405933952edbf"><code>25026b9</code></a> [fastlane_core] Create a unique package directory for non-macOS uploads (<a href="https://redirect.github.com/fastlane/fastlane/issues/30144">#30144</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/283d477bc6d3566e3a07a9f8e97b8d747b16a3e5"><code>283d477</code></a> [gem] move to webrick 1.9.x (<a href="https://redirect.github.com/fastlane/fastlane/issues/30135">#30135</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/bc098d142eb3c78b1608db4161fa68a00816affc"><code>bc098d1</code></a> [gem] upgrade 'terminal-table' to drop monkey patch (<a href="https://redirect.github.com/fastlane/fastlane/issues/30137">#30137</a>)</li> <li><a href="https://github.com/fastlane/fastlane/commit/1f64c1f8e24dbc7b2e64317cc4fae563d1c2e3c6"><code>1f64c1f</code></a> [fastlane_core] Fix video resolution parsing when audio track precedes video ...</li> <li><a href="https://github.com/fastlane/fastlane/commit/a94b3ada721f7b8a10cc4a865bd2fe13533e5e79"><code>a94b3ad</code></a> [gym] Fix Mac Catalyst package type detection when catalyst_platform is not s...</li> <li>Additional commits viewable in <a href="https://github.com/fastlane/fastlane/compare/fastlane/2.237.0...fastlane/2.238.0">compare view</a></li> </ul> </details> <br /> [](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Jeppe B <2jepp9350@gmail.com> |
||
|
|
4c7d8c6f2e |
Consolidate verified CI and Fastlane upgrades (#214)
## Summary - Consolidate the intended changes from #194–#199 onto current master. - Upgrade checkout 7.0.1, upload-artifact 7.0.1, setup-android 4.0.1, setup-java 5.6.0, github-script 9.0.0, and Fastlane 2.237.0. - Pin every upgraded workflow action to its verified immutable commit SHA. - Exclude the abandoned dependency-aware test-graph ancestor entirely. ## Verification - All five action families matched live upstream tag commits (`github-script` uses the peeled annotated-tag commit). - Workflow YAML parse passed. - AI workflow generated-output check passed. - 22 focused mobile/Playwright workflow unit tests passed. - `git diff --check` passed. - Ruby/Bundler is unavailable locally; Linux/macOS Fastlane resolution remains a required CI gate. |
||
|
|
88eda43560 |
Automate signed iOS App Store releases (#192)
## What changed - adds production iOS identity, localized storefront metadata, native privacy declarations, App Store-safe artwork, and account-deletion UX - mirrors the live Danish Google Play title, short description, and long description in the App Store metadata source - generates Android launcher/store icons from the opaque iOS marketing master so both platforms use the same white background - adds guarded GitHub Actions workflows for storefront readiness, credential health, signed TestFlight uploads, and App Store candidate preparation - adds pinned Fastlane configuration with a committed dependency lock, release manifest tooling, and an operational App Store runbook - preserves the upstream iOS safe-area implementation while retaining opaque App Store icon assets ## Why The repository previously supported development-signed device bundles but had no production App Store identity, reproducible storefront source of truth, or protected signed-release pipeline. Apple also requires in-app account deletion for apps that support account creation. The Android icon master was transparent, which rendered as black on dark store/device surfaces. ## Impact Automation remains fail-closed behind `APP_STORE_AUTOMATION_ENABLED=false`. No build can upload to TestFlight or change App Store metadata until the switch is deliberately enabled after merge and the remaining release gates are satisfied. ## Validation - focused App Store, iOS icon, and cross-platform icon-background tests pass - every generated Android store/launcher icon is opaque with pure-white corners; iOS marketing artwork is checked the same way - Android icon drift check passes for all 19 generated files - production Vite build and the broader focused release checks completed successfully - storefront metadata is valid; only the two expected screenshot-set warnings remain - App Store Readiness is green at head `4445fecc` - Apple Distribution certificate and App Store profile were independently verified for `HP3FJ4GVL7.io.truckwash.app` - live App Store Connect API authentication succeeded for app `6792777794` - App Store record, free Denmark-only availability, and automatic `Internal QA` TestFlight group are configured - EU trader status, Content Rights, 4+ age rating, and the published App Privacy label are completed in App Store Connect - iPhone and iPad accessibility declarations are configured honestly as pre-release drafts ## Remaining external gates - reviewed iPhone and iPad screenshot sets are still required - an App Review login must be supplied without creating or exposing customer credentials - the first signed TestFlight candidate must run after merge and deliberate automation enablement |