You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Audit the selected source with license-audit; resolve release-blocking findings. afef7eb: no release-blocking findings.
Merge the version, lockfile, and undated changelog PR; record the frozen release commit. 46972dd via chore: prepare 0.7.3 release #328.
Complete the final license review, including the actual Cargo package and any audit corrections. 46972dd: the Cargo package matches the release commit, LICENSE, NOTICE, and DISCLAIMER are identical, and no corrections are needed.
Check the frozen release commit
cargo x lint (46972dd: passed)
cargo x check (46972dd: passed)
cargo x test --no-capture (46972dd: 634 passed)
RUSTUP_TOOLCHAIN=1.86.0 cargo x test --no-capture (46972dd: 634 passed)
cargo x semver --release-version 0.7.3; document any allowed major-release API breaks. 46972dd: no semver update required.
cargo publish --package asyncband --locked --dry-run from the clean checkout. 46972dd: passed.
Tag signer / source signer fingerprints and provenance: RC tag signed by 1C16 4AC4 7BD6 096E 4B0A 3210 F9AD 562D EDD0 2616 (Ouyang Haixu, release manager); source archive signed by the automated project key 023A 42E7 299A 010F EE7A E021 393A FB9D 52BB 37B8. Both are published in the project KEYS.
Checklist
Push the signed RC tag at the frozen commit; confirm both release workflows and ATR upload. ATR revision 00001; ATR checks report no blockers, with 16 expected header concerns on the third-party files recorded in LICENSE, one RAT concern on .editorconfig, and one SBOM suggestion.
Download and verify the ATR revision: signatures, checksum, source contents against the RC commit, independent archive rebuild for automated signing, build, and packaging. Revision 00001: the SHA-512 and both signatures verify, the 355 archive entries match git archive of 46972dd in contents and modes, 634 tests pass on stable and the 1.86.0 MSRV from the extracted source, the publish dry run succeeds, and a Linux rebuild of the same commit is byte-identical.
Complete the license review of the actual source archive and Cargo distribution; address ATR findings. LICENSE, NOTICE, and DISCLAIMER are present and identical in both, no binary files are shipped, and ATR's concerns are the third-party files that keep their upstream notices plus .editorconfig.
Start the PPMC vote in ATR; record the vote link and closing time. Closing 2026-09-26 03:15 UTC.
After the required duration and votes, resolve PPMC as Passed in ATR; record its result and the automatically started IPMC vote, and ensure that thread includes the PPMC tally link and any carried IPMC votes.
After the required duration and binding votes, resolve IPMC as Passed in ATR; record its result.
Confirm ATR publishes the voted revision to ASF distribution; record the SVN revision and download URL.
Push the signed final tag at the approved commit and approve/verify crates.io publication.
Verify ASF downloads and signatures, crates.io, and docs.rs.
Send the announcement through ATR and record its archive link.
Merge the publication-date changelog PR and confirm superseded-release archival as applicable.
Close this issue after the preceding required items are complete.
v0.7.2)afef7eb53d441350f0ca4213a854f151a7df6269; no deferred work46972ddd371370d831c18301940d16848511816f(chore: prepare 0.7.3 release #328)Prepare and freeze
license-audit; resolve release-blocking findings.afef7eb: no release-blocking findings.46972ddvia chore: prepare 0.7.3 release #328.46972dd: the Cargo package matches the release commit, LICENSE, NOTICE, and DISCLAIMER are identical, and no corrections are needed.Check the frozen release commit
cargo x lint(46972dd: passed)cargo x check(46972dd: passed)cargo x test --no-capture(46972dd: 634 passed)RUSTUP_TOOLCHAIN=1.86.0 cargo x test --no-capture(46972dd: 634 passed)cargo x semver --release-version 0.7.3; document any allowed major-release API breaks.46972dd: no semver update required.cargo publish --package asyncband --locked --dry-runfrom the clean checkout.46972dd: passed.46972dd: https://github.com/apache/asyncband/actions/runs/35741807974Candidate
v0.7.3-rc.1, a signed tag object457b71apointing to46972dd000013fdbba44df9d48c2fb3d19b31862b750f30581e73da04bd380da8045c57df111ed6de4037dc3171508f47cb617de2939ae7200c999fd4f0b2ce664bb230f43691C16 4AC4 7BD6 096E 4B0A 3210 F9AD 562D EDD0 2616(Ouyang Haixu, release manager); source archive signed by the automated project key023A 42E7 299A 010F EE7A E021 393A FB9D 52BB 37B8. Both are published in the project KEYS.Checklist
00001; ATR checks report no blockers, with 16 expected header concerns on the third-party files recorded inLICENSE, one RAT concern on.editorconfig, and one SBOM suggestion.00001: the SHA-512 and both signatures verify, the 355 archive entries matchgit archiveof46972ddin contents and modes, 634 tests pass on stable and the 1.86.0 MSRV from the extracted source, the publish dry run succeeds, and a Linux rebuild of the same commit is byte-identical..editorconfig.Vote and publish
Checklist