Skip to content

Fix release verification harness - #12

Merged
ProgramComputer merged 1 commit into
mainfrom
fix/verify-release-harness
Sep 29, 2026
Merged

ProgramComputer merged 1 commit into
mainfrom
fix/verify-release-harness

Conversation

@ProgramComputer

Copy link
Copy Markdown
Owner

The first Verify release run for 1.1.0 failed on Linux and Windows before testing anything. npm pack --pack-destination requires the destination folder to exist, and scripts/package-smoke.mjs --from-registry never created it.

  • Create the download folder before npm pack.
  • Run the verification harness (scripts and tests) from the branch the workflow runs on instead of the release tag. The immutable v1.1.0 tag contains the buggy script, and the package under test comes from the registry, pinned by the tested integrity. The now-redundant tag-vs-package.json check is dropped.

Evidence: with this fix, node scripts/package-smoke.mjs --from-registry @programcomputer/nasa-mcp-server@1.1.0 --expect-integrity sha512-iMX4…Fg== passes locally on Windows. It downloads with a fresh cache, integrity matches, installs runtime dependencies only, the bin reports 1.1.0, and 5/5 stdio/HTTP MCP tests pass against the installed bin. No package code changes.

@ProgramComputer
ProgramComputer merged commit 04844f6 into main Sep 29, 2026
6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant