litellm/.github/workflows
yuneng-jiang 39c1042258
[Docs] Add cosign Docker image verification steps to security blog posts (#25122)
* docs(blog): add cosign Docker image verification instructions

Add steps for verifying Docker images with cosign to three security blog posts:
CI/CD v2, Security Townhall, and Security Update.

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>

* docs(proxy): add cosign verification to Docker/Helm/Terraform deploy page

Add image signature verification steps to the main deployment doc so
users pulling Docker images know how to verify them with cosign.

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>

* chore: fixes

* Update index.md

Co-authored-by: greptile-apps[bot] <165735046+greptile-apps[bot]@users.noreply.github.com>

* [Docs] Scope cosign signing docs to GHCR and specify starting version

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>

* [Docs] Add starting version callout to ci_cd_v2 blog post

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
Co-authored-by: Krrish Dholakia <krrish+github@berri.ai>
Co-authored-by: greptile-apps[bot] <165735046+greptile-apps[bot]@users.noreply.github.com>
2026-04-06 09:59:27 -07:00
..
_test-unit-base.yml [Infra] Add unit test workflows for Postgres, Redis, and security test suites 2026-03-28 12:06:45 -07:00
_test-unit-services-base.yml [Fix] Use integration-redis-postgres env for Redis workflows since Postgres always starts 2026-03-28 14:25:29 -07:00
auto_update_price_and_context_window_file.py only add/update vercel ai gateway models 2025-08-04 17:22:36 -07:00
auto_update_price_and_context_window.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
check_duplicate_issues.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
check-schema-sync.yml [Infra] Fix zizmor artipacked warnings on schema sync workflows 2026-03-27 16:14:06 -07:00
codeql.yml Merge pull request #24697 from BerriAI/litellm_codeql_gha 2026-03-27 12:17:39 -07:00
codspeed.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
create_daily_staging_branch.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
create-release.yml [Fix] Address review feedback on release workflow 2026-03-31 16:26:20 -07:00
helm_unit_test.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
issue-keyword-labeler.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
label-component.yml pin github scripts + remove unused 2026-03-25 17:38:36 -07:00
llm-translation-testing.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
publish_to_pypi.yml [Infra] Migrate PyPI publishing from CircleCI to GitHub Actions OIDC 2026-03-26 19:02:14 -07:00
read_pyproject_version.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
README.md
results_stats.csv
run_llm_translation_tests.py [Docs] Add cosign Docker image verification steps to security blog posts (#25122) 2026-04-06 09:59:27 -07:00
run_observatory_tests.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
scan_duplicate_issues.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
scorecard.yml Fix broken codeql-action SHA in scorecard workflow 2026-04-03 11:36:02 -07:00
stale.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
sync-schema.yml [Infra] Fix zizmor artipacked warnings on schema sync workflows 2026-03-27 16:14:06 -07:00
test_server_root_path.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
test-linting.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
test-litellm-matrix.yml Use unique filenames per matrix job to preserve all coverage reports 2026-03-31 16:44:13 -07:00
test-litellm-ui-build.yml chore: harden npm supply chain — pin overrides, enforce npm ci, add ignore-scripts (#24838) 2026-03-31 13:41:37 -07:00
test-litellm.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
test-mcp.yml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
test-model-map.yaml fix: address zizmor comments 2026-03-26 21:09:01 -07:00
test-proxy-e2e-azure-batches.yml Pin nodejs-wheel-binaries in CI workflows running prisma generate 2026-03-27 11:25:03 -07:00
test-unit-caching-redis.yml [Fix] Use integration-redis-postgres env for Redis workflows since Postgres always starts 2026-03-28 14:25:29 -07:00
test-unit-core-utils.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-documentation.yml [Fix] Scope documentation workflow to match CircleCI and add missing router settings 2026-03-28 11:23:53 -07:00
test-unit-enterprise-routing.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-integrations.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-llm-providers.yml [Infra] Add isolated unit test workflows with hardened security posture 2026-03-28 09:56:58 -07:00
test-unit-misc.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-proxy-auth.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-proxy-db.yml [Fix] Move Postgres username and password to environment secrets 2026-03-28 13:31:58 -07:00
test-unit-proxy-endpoints.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-proxy-infra.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-proxy-legacy.yml [Infra] Add isolated unit test workflows with hardened security posture 2026-03-28 09:56:58 -07:00
test-unit-responses-caching-types.yml [Infra] Fix job naming in reusable workflow callers 2026-03-28 10:07:32 -07:00
test-unit-security.yml [Fix] Move Postgres username and password to environment secrets 2026-03-28 13:31:58 -07:00
update_release.py
zizmor.yml ci: add zizmor github action 2026-03-27 05:33:21 -07:00

Simple PyPI Publishing

A GitHub workflow to manually publish LiteLLM packages to PyPI with a specified version.

How to Use

  1. Go to the Actions tab in the GitHub repository
  2. Select Simple PyPI Publish from the workflow list
  3. Click Run workflow
  4. Enter the version to publish (e.g., 1.74.10)

What the Workflow Does

  1. Updates the version in pyproject.toml
  2. Copies the model prices backup file
  3. Builds the Python package
  4. Publishes to PyPI

Prerequisites

Make sure the following secret is configured in the repository:

  • PYPI_PUBLISH_PASSWORD: PyPI API token for authentication

Example Usage

  • Version: 1.74.11 → Publishes as v1.74.11
  • Version: 1.74.10-hotfix1 → Publishes as v1.74.10-hotfix1

Features

  • Manual trigger with version input
  • Automatic version updates in pyproject.toml
  • Repository safety check (only runs on official repo)
  • Clean package building and publishing
  • Success confirmation with PyPI package link