diff --git a/.gitea/workflows/docker-publish.yml b/.gitea/workflows/docker-publish.yml index 83e87da..ff65090 100644 --- a/.gitea/workflows/docker-publish.yml +++ b/.gitea/workflows/docker-publish.yml @@ -33,18 +33,39 @@ on: - 'v*' workflow_dispatch: inputs: + # `type:` is REQUIRED for Gitea to render these fields in the "Run + # workflow" dialog. Without it (Gitea 1.26.2) the dispatch form shows a + # branch selector and NO inputs at all, so a manual run silently uses + # every default — which for `release_tag: ''` means RELEASE_TAG resolves + # empty, the variant tag list becomes `:`, and the run dies on an + # invalid reference AFTER paying the full base + smoke cost (~70 min). + # That made the documented `smoke_only` escape hatch below unreachable + # from the UI for its whole existence; found 2026-09-06 trying to use it. + # + # Deliberately `string` and not `boolean`, even though these two read as + # flags: every consumption is a STRING comparison against 'true' + # (`inputs.smoke_only != 'true'` at the build-variant gates, + # `inputs.promote_latest == 'true'` at the promote gates) plus string + # interpolation into env.PROMOTE_LATEST. A boolean-typed input yields a + # real boolean, so `!= 'true'` would compare across types and could + # invert a publish gate rather than fail loudly. Changing the type here + # would mean re-auditing all six call sites; keeping it string is a + # rendering fix with provably zero semantic change. release_tag: description: 'Release tag to publish (e.g. v1.0.0). Used only for workflow_dispatch runs.' required: false default: '' + type: string promote_latest: description: 'Update latest aliases (default true for tag-push, false for manual test runs)' required: false default: 'false' + type: string smoke_only: - description: 'Build base + run both smoke jobs against HEAD, then stop. Publishes nothing. Use to validate smoke assertions without cutting a tag.' + description: 'Build base + run both smoke jobs against HEAD, then stop. Publishes nothing. Use to validate smoke assertions without cutting a tag. Set to the literal string true.' required: false default: 'false' + type: string concurrency: group: ${{ github.workflow }}-${{ github.ref }}