Skip to main content
Run any Skill in Manus
with one click

noyalib-ci-and-release

Stars0
Forks0
UpdatedJuly 8, 2026 at 11:54

Load this when operating noyalib's CI or shipping a release. Covers the workflow graph (ci.yml orchestrator, shared-* reusables, security.yml, scorecard.yml, release.yml), THE cache-poisoning doctrine (isolated CARGO_TARGET_DIR per compile surface — the v0.0.9-v0.0.11 lesson), reading CI failures fast with gh, the supply-chain gate constellation (cargo-vet, cargo-deny, cargo-machete, cargo-semver-checks, REUSE, osv-scanner mirror rule), the tag-driven release flow (version bump → CHANGELOG → RELEASE-NOTES → version-refs audit → squash-merge → tag push → release.yml → satellite lockstep), and the shared-workflow caller-permissions trap (union callee scopes or the run startup-fails with 0 jobs, no annotation). Triggers: "CI is red", "release prep", "how do I tag", "cargo-vet failure", "cargo-deny advisory", "workflow permissions", "cache poisoning", "MSRV job broke", "satellite didn't publish". Sibling: noyalib-change-control (which gates apply). Date-stamped 2026-07-08; branch feat/v0.0.14.

Installation

Install with Codex or Claude Copy this prompt, paste it into Codex, Claude, or another assistant, and let it review the skill page and install it for you.

File Explorer
2 files
SKILL.md
readonly