feat(action): attestation/update-pr-map - Update attestation map in PR
@aRustyDev is already working on this.
Since Jan 27, 2026.
Assessment
This issue has not been assessed yet.
Description
Parent Epic
Part of #22 (Atomic Release Pipeline Actions)
Priority
P0 - Core attestation functionality used by W1, W5
Description
Create a composite action that updates the attestation map in a PR description.
Adds or updates an attestation ID for a given check name, using HTML comments:
<!-- ATTESTATION_MAP
{"lint-test-v1.32.11": "attestation-id-1", "install-test-v1.32.11": "attestation-id-2"}
-->
Inputs
| Input | Required | Default | Description |
|---|---|---|---|
pr-number |
Yes | - | PR number to update |
check-name |
Yes | - | Name of the check (e.g., "lint-test-v1.32.11") |
attestation-id |
Yes | - | The attestation ID to store |
token |
No | github.token |
GitHub token for API access |
Outputs
| Output | Description |
|---|---|
updated |
"true" if successfully updated |
map |
Updated JSON object |
Usage Example
- uses: arustydev/gha/actions/attestation/update-pr-map@v1
with:
pr-number: ${{ github.event.pull_request.number }}
check-name: "lint-test-v1.32.11"
attestation-id: ${{ steps.attest.outputs.attestation-id }}
Source Reference
helm-charts/.github/scripts/attestation-lib.sh:
update_attestation_map()(lines 36-118)
Implementation Notes
- Use exponential backoff retry for concurrent updates
- Create map section if it doesn't exist
- Preserve existing attestations when adding new ones
- Dominant language
- Shell
- Stars
- 0
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from aRustyDev/gh
-
dependencies github-actions
Difficulty 1/5 Under an hour Newbie friendliness 10/100
-
dependencies github-actions
Difficulty 1/5 Under an hour Newbie friendliness 15/100
-
dependencies github-actions
Difficulty 1/5 Under an hour Newbie friendliness 50/100
-
dependencies github-actions
Difficulty 2/5 1-3 hours Newbie friendliness 20/100
-
dependencies github-actions
Difficulty 2/5 1-3 hours Newbie friendliness 10/100
Similar issues
-
align on terminology Open
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
CycloneDX/transparency-exchange-api#393 · 1 comment ·
-
module/agent platform/macos type/bug/regression
Difficulty 2/5 1-3 hours Newbie friendliness 88/100
-
Difficulty 1/5 Under an hour Newbie friendliness 92/100
CachyOS/cachyos-aur-derived#754 ·
-
Difficulty 1/5 Under an hour Newbie friendliness 90/100
CrowdStrike/falcon-scripts#528 ·
-
bug(cli): hapi doctor inline-media prints a fabricated B:\ helper-script path in packaged installs Open
Difficulty 2/5 1-3 hours Newbie friendliness 70/100