Skip to content

Release credentials custody: Play Console access, signing lineage, Sentry DSN (owner: Altay) #46

Description

@altaywtf

Part of #14 (W0 — access and credentials). Owner: Altay — this is account/key custody work agents cannot do. Blocks #31 and #35 (their shared stop condition).

Outcome

Everything needed to ship io.put.putio releases is confirmed, in custody, and documented — before any release lane work starts.

Scope

  • Confirm Play Console ownership/access for the io.put.putio listing (live at versionCode 91)
  • Locate and verify the upload keystore + signing lineage used by the legacy lane (putio-web/apps/tv-native/android/fastlane/ reads KEYSTORE_PATH/KEYSTORE_PASSWORD/KEY_ALIAS/KEY_PASSWORD from env); confirm whether Play App Signing is enrolled
  • Decide keystore custody: workspace pattern suggests a vault repo (putio-code-signing-apple is the Apple analogue — decide Android equivalent: frontend vault payload vs a putio-code-signing-android repo)
  • Play API service account (or existing JSON_KEY_FILE account) validated for CI publishing
  • Sentry project(s) + DSN for putio-android (mobile and TV surfaces)
  • Record all of it in repo docs (custody, recovery, who can cut a release)

Acceptance criteria

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions