Go CLI Release Automation
SkillMediaDesign, implement, and review secure Go CLI release automation with versioned tags, GoReleaser, GitHub Actions, checksums, signing, provenance, changelogs, Homebrew distribution, least-privilege credentials, verification, and recovery. Use when publishing CLI artifacts, configuring release CI, adding package-manager delivery, or diagnosing a partial or failed release.
Use Go CLI Release Automation in Claude, ChatGPT or Ahel Desktop
Free. Sign in, add Go CLI Release Automation and connect your AI. About a minute.
Also: Claude Code · Cursor · Codex
Then ask your AI: use the Go CLI Release Automation skill
Details
Instructions available. Your AI can read the instructions. Execution depends on the setup they require.
Account requirements not reviewed. Check the skill instructions before use; ahel provides instructions and does not run this skill.
No other account needed.
Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.
What this skill tells your AI
The instructions your AI receives, as published by hashgraph-online/awesome-codex-plugins in plugins/LVTD-LLC/skills/skills/go-cli-release-automation/SKILL.md and read by ahel’s review.
Treat release automation as a state transition with verifiable inputs, immutable artifacts, least privilege, and an explicit recovery path.
Core Workflow
- Define version, supported targets, artifact names, and release authority.
- Validate release configuration without publishing.
- Build final artifacts exactly once from a clean tagged commit and generate checksums.
- Publish through pinned, least-privilege CI with protected environments.
- Update package-manager metadata from the published artifacts.
- Install and smoke-test representative artifacts.
- Record partial state and recover without silently replacing released bytes.
Read Next
| Task | Load |
|---|---|
| Design and validate the pipeline | guidelines.md, workflows/validate-release-config.md |
| Publish a tagged release | workflows/publish-tagged-release.md |
| Publish Homebrew metadata | workflows/publish-homebrew-package.md |
| Recover a failed release | workflows/recover-failed-release.md |
| Review security and reproducibility | references/release-automation/rules.md |
| Review examples | references/release-automation/examples.md |
Guardrails
- Never release from an unreviewed or dirty source state.
- Do not grant write tokens to pull-request jobs or untrusted code.
- Pin CI actions and use current, supported GoReleaser configuration.
- Do not treat build tags as authorization controls.
- Do not overwrite published artifacts under the same version.
- Do not accept locally rebuilt bytes as recovery evidence.
Source Notes
Guidance is transformed and paraphrased from Marian Montagnino, Building Modern CLI Applications in Go (Packt, 2023), Chapters 7 and 12-14, and Ricardo Gerardi, Powerful Command-Line Applications in Go (2021).
Verify current configuration against https://goreleaser.com/, https://docs.github.com/en/actions/reference/security/secure-use, and the target package manager. Current GoReleaser deprecations must be checked before use.
Signals
- GitHub stars
- 1k
- Forks
- 316
- Last commit
- Oct 2026
Advanced
- Item type
- skill
- Key
go-cli-release-automation- Source
- github.com/hashgraph-online/awesome-codex-plugins
github.com/hashgraph-online/awesome-codex-plugins
Related picks
Skill · samber
The pick for Gogo-sdk-specialist
Skill · a5c-ai
The pick for Gogithub-actions
Skill · tddworks
The pick for GitHub Actionsgithub-actions-docs
Skill · devantler-tech
The pick for GitHub Actionssecrets-exposure-review
Skill · naodeng
The pick for Secretssecrets-with-git-crypt
Skill · derailed-dash
The pick for Secrets