Sourced from astral-sh/setup-uv's releases.
v8.1.0 🌈 New input
no-projectChanges
This add the a new boolean input
no-project. It only makes sense to use in combination withactivate-environment: trueand will append--no projectto theuv venvcall. This is for example useful if you have a pyproject.toml file with parts unparseable by uv🚀 Enhancements
- Add input no-project in combination with activate-environment
@eifinger(#856)🧰 Maintenance
- fix: grant contents:write to validate-release job
@eifinger(#860)- Add a release-gate step to the release workflow
@zanieb(#859)- Draft commitish releases
@eifinger(#858)- Add action-types.yml to instructions
@eifinger(#857)- chore: update known checksums for 0.11.7 @github-actions[bot] (#853)
- Refactor version resolving
@eifinger(#852)- chore: update known checksums for 0.11.6 @github-actions[bot] (#850)
- chore: update known checksums for 0.11.5 @github-actions[bot] (#845)
- chore: update known checksums for 0.11.4 @github-actions[bot] (#843)
- Add a release workflow
@zanieb(#839)- chore: update known checksums for 0.11.3 @github-actions[bot] (#836)
📚 Documentation
- Update ignore-nothing-to-cache documentation
@eifinger(#833)- Pin setup-uv docs to v8
@eifinger(#829)⬆️ Dependency updates
- chore(deps): bump release-drafter/release-drafter from 7.1.1 to 7.2.0 @dependabot[bot] (#855)
v8.0.0 🌈 Immutable releases and secure tags
This is the first immutable release of
setup-uv🥳All future releases are also immutable, if you want to know more about what this means checkout the docs.
This release also has two breaking changes
New format for
manifest-fileThe previously deprecated way of defining a custom version manifest to control which
uvversions are available and where to download them from got removed. The functionality is still there but you have to use the new format.No more major and minor tags
To increase security even more we will stop publishing minor tags. You won't be able to use
@v8or@v8.0any longer. We do this because pinning to major releases opens up users to supply chain attacks like what happened to tj-actions.[!TIP] Use the immutable tag as a version
astral-sh/setup-uv@v8.0.0Or even better the githashastral-sh/setup-uv@cec208311dfd045dd5311c1add060b2062131d57
... (truncated)
0880764
fix: grant contents:write to validate-release job (#860)717d6ab
Add a release-gate step to the release workflow (#859)5a911eb
Draft commitish releases (#858)080c31e
Add action-types.yml to instructions (#857)b3e97d2
Add input no-project in combination with activate-environment (#856)7dd591d
chore(deps): bump release-drafter/release-drafter from 7.1.1 to 7.2.0
(#855)1541b77
chore: update known checksums for 0.11.7 (#853)cdfb2ee
Refactor version resolving (#852)cb84d12
chore: update known checksums for 0.11.6 (#850)1912cc6
chore: update known checksums for 0.11.5 (#845)