ci(embedded-mpv): keep Windows runtime pin available (#1495)

This commit is contained in:
4gray authored and GitHub committed 2026-08-29 21:24:06 +02:00
1 parent 29ca94aa43
commit f04f67728e
14 files changed
+972 -75

No files matched your search

+16
View File
@@ -148,6 +148,22 @@ pnpm run make:app
nx run electron-backend:make
```
### Windows Embedded MPV Pin Maintenance
- PR, master, and tag builds resolve the Windows runtime only from
`tools/embedded-mpv/windows-runtime-pin.json`; repository variables are not
build inputs.
- Validate the checked-in schema and provenance with
`pnpm embedded-mpv:windows-runtime-pin:check`.
- Prepare a manual rotation with
`pnpm embedded-mpv:windows-runtime-pin:refresh -- --force`. The weekly
`refresh-windows-embedded-mpv-runtime.yaml` workflow runs the same updater
and opens a reviewable PR before upstream retention expires.
- The PAT-backed refresh job must keep every third-party action pinned to a
full commit. Do not mirror the upstream binary without complete
corresponding source, build records, license notices, and a validated
transitive license closure.
### Electron CDP Debugging
- Start Electron in dev mode with: `nx serve electron-backend`