@@ -101,6 +101,7 @@ jobs:
101101 run : |
102102 # See: https://docs.github.com/actions/writing-workflows/choosing-what-your-workflow-does/workflow-commands-for-github-actions#setting-an-environment-variable
103103 echo "BUILD_FOLDER=${{ env.PROJECT_NAME }}_osx_${{ matrix.build.folder-suffix }}" >>"$GITHUB_ENV"
104+
104105 TAG="${GITHUB_REF/refs\/tags\//}"
105106 echo "PACKAGE_FILENAME=${{ env.PROJECT_NAME }}_${TAG}_${{ matrix.build.package-suffix }}" >>$GITHUB_ENV
106107
@@ -121,21 +122,26 @@ jobs:
121122 KEYCHAIN_PASSWORD : keychainpassword
122123 run : |
123124 echo "${{ secrets.INSTALLER_CERT_MAC_P12 }}" | base64 --decode >"${{ env.INSTALLER_CERT_MAC_PATH }}"
125+
124126 security create-keychain \
125127 -p "${{ env.KEYCHAIN_PASSWORD }}" \
126128 "${{ env.KEYCHAIN }}"
129+
127130 security default-keychain \
128131 -s "${{ env.KEYCHAIN }}"
132+
129133 security unlock-keychain \
130134 -p "${{ env.KEYCHAIN_PASSWORD }}" \
131135 "${{ env.KEYCHAIN }}"
136+
132137 security import \
133138 "${{ env.INSTALLER_CERT_MAC_PATH }}" \
134139 -k "${{ env.KEYCHAIN }}" \
135140 -f pkcs12 \
136141 -A \
137142 -T "/usr/bin/codesign" \
138143 -P "${{ secrets.INSTALLER_CERT_MAC_PASSWORD }}"
144+
139145 security set-key-partition-list \
140146 -S apple-tool:,apple: \
141147 -s \
@@ -150,6 +156,7 @@ jobs:
150156 unzip \
151157 gon_macos.zip \
152158 -d /usr/local/bin
159+
153160 - name : Write gon config to file
154161 # gon does not allow env variables in config file (https://github.com/mitchellh/gon/issues/20)
155162 run : |
@@ -192,6 +199,7 @@ jobs:
192199 -C "${{ env.BUILD_FOLDER }}/" \
193200 "${{ env.PROJECT_NAME }}" \
194201 -C ../../ LICENSE.txt
202+
195203 - name : Replace artifact with notarized build
196204 uses : actions/upload-artifact@v4
197205 with :
@@ -231,14 +239,17 @@ jobs:
231239 -q \
232240 -P /tmp \
233241 https://github.com/fsaintjacques/semver-tool/archive/3.2.0.zip
242+
234243 unzip \
235244 -p \
236245 /tmp/3.2.0.zip \
237246 semver-tool-3.2.0/src/semver \
238247 >/tmp/semver
248+
239249 chmod \
240250 +x \
241251 /tmp/semver
252+
242253 if [[ \
243254 "$(
244255 /tmp/semver get prerel \
0 commit comments