Unbound Release / Check Preconditions (push) Successful in 21s
Unbound Release / Create Release (push) Skipped
pre-commit / pre-commit (push) Skipped
Unbound Release / Generate Changelog and Handle PR (push) Successful in 48s
Unbound Release / Create Tag (push) Successful in 24s
Release / release (push) Successful in 11m1s
schemas / build (push) Successful in 3m19s
schemas / check (push) Successful in 1m33s
schemas / vulnerabilities (push) Successful in 1m2s
schemas / check-release (push) Successful in 58s
schemas / deploy-prod (push) Successful in 1m22s
## Summary
`k8s/deploy.yaml` takes the image from build-tools: `image: ${IMAGE}` instead of the hard-coded `oci.unbound.se/unboundsoftware/schemas:${COMMIT}`.
`deploy` substitutes `${IMAGE}` with `<registry>/<owner>/<name>:<tag>`, where the registry comes from the build-tools config and the tag is the value `${COMMIT}` gets today. The rendered reference is unchanged. Moving off `oci.unbound.se` later becomes one change in infra.
Validated on shiny/time-service#864: merged and deployed to AWS staging and Frostmoln staging with the same image. Prerequisites, all merged:
- unboundsoftware/infra#1808: registry in `BUILDTOOLS_FROSTMOLN_STAGING`
- shiny/acctest#952: acctest pins build-tools to the Gitea registry
🤖 Generated with [Claude Code](https://claude.com/claude-code)
Reviewed-on: https://gitea.unbound.se/unboundsoftware/schemas/pulls/986