[ci-bitrise] Mirror LC Wallet's bitrise.yml structure exactly

Switch from fastlane-driven build (build_app + hand-rolled apikey.json)
to Bitrise's own xcode-archive step, matching LC Wallet 1:1: manage-ios-
code-signing + xcode-archive@5 (automatic_code_signing: api-key) do the
build/sign, deploy-to-itunesconnect-deliver@2 handles TestFlight in the
beta workflow, fastlane only runs for the release lane (metadata push +
App Store upload) reading BITRISE_IPA_PATH — same shape as LC Wallet's
Fastfile beta/release lanes.

Only genuine differences from LC Wallet, all forced by this project's
actual layout:
- BITRISE_PROJECT_PATH/SCHEME point at Darwin/PediFoods.xcodeproj
- fastlane work_dir is Darwin/ (Fastfile lives there, not repo root)
- build number bumps CURRENT_PROJECT_VERSION in Skip.env instead of
  agvtool — this project has no VERSIONING_SYSTEM set, Skip.env is the
  actual shared source of truth for both Darwin and Android
- team_id comes from a DEVELOPMENT_TEAM secret instead of a hardcoded
  literal — LC Wallet's Apple team ID isn't necessarily this app's
This commit is contained in:
Daniel Arantes Loverde
2026-07-09 16:24:23 -03:00
parent 74526d0fb9
commit 5761523344
3 changed files with 84 additions and 60 deletions

View File

@@ -9,16 +9,37 @@ meta:
app:
envs:
- BITRISE_PROJECT_PATH: Darwin/PediFoods.xcodeproj
opts:
is_expand: false
- BITRISE_SCHEME: PediFoods App
opts:
is_expand: false
- BITRISE_DISTRIBUTION_METHOD: app-store
opts:
is_expand: false
- APPLE_ID: developer@loverde.com.br
# MANUAL (Bitrise Secrets tab — never commit these):
# ASC_KEY_ID → App Store Connect API Key ID
# ASC_ISSUER_ID → App Store Connect Issuer ID
# ASC_KEY_CONTENT → .p8 file content (raw, written verbatim into apikey.json)
# ASC_KEY_CONTENT → .p8 file content base64-encoded
# ITC_TEAM_ID → iTunes Connect Team ID (numeric)
# DEVELOPMENT_TEAM → Apple Developer Team ID, written into
# Darwin/fastlane/AppStore.xcconfig at build time
# (Darwin/PediFoods.xcconfig leaves it blank on purpose)
# (Darwin/PediFoods.xcconfig leaves it blank on
# purpose — this project has no VERSIONING_SYSTEM /
# hardcoded team like LC Wallet, so it's injected
# here instead)
# ─── PIPELINES ────────────────────────────────────────────────────────────────
pipelines:
run_tests:
workflows:
build_for_testing: {}
test_without_building:
depends_on:
- build_for_testing
parallel: "$TEST_SHARD_COUNT"
# ─── WORKFLOWS ────────────────────────────────────────────────────────────────
workflows:
@@ -34,46 +55,57 @@ workflows:
- content: |
cd $BITRISE_SOURCE_DIR
# CURRENT_PROJECT_VERSION lives in Skip.env — shared by both
# Darwin/PediFoods.xcconfig and Android/settings.gradle.kts,
# not a standard Xcode "Apple Generic Versioning" setting,
# so agvtool does not apply here.
# Darwin/PediFoods.xcconfig and Android/settings.gradle.kts.
# No VERSIONING_SYSTEM is set on the target, so agvtool
# (which LC Wallet uses) does not apply to this project.
sed -i '' "s/CURRENT_PROJECT_VERSION = .*/CURRENT_PROJECT_VERSION = $BITRISE_BUILD_NUMBER/" Skip.env
- script@1:
title: Write code signing team and App Store Connect API key
title: Write code signing team
inputs:
- content: |
echo "DEVELOPMENT_TEAM = $DEVELOPMENT_TEAM" >> "$BITRISE_SOURCE_DIR/Darwin/fastlane/AppStore.xcconfig"
# ASC_KEY_CONTENT is the raw multi-line .p8 PEM content — build
# the JSON with Ruby's encoder so its embedded newlines get
# escaped correctly instead of breaking the JSON string.
export APIKEY_PATH="$BITRISE_SOURCE_DIR/Darwin/fastlane/apikey.json"
ruby -rjson -e '
File.write(ENV["APIKEY_PATH"], JSON.generate({
"key_id" => ENV["ASC_KEY_ID"],
"issuer_id" => ENV["ASC_ISSUER_ID"],
"key" => ENV["ASC_KEY_CONTENT"],
"in_house" => false
}))
'
- fastlane@3:
- manage-ios-code-signing@2:
inputs:
- lane: beta
- work_dir: $BITRISE_SOURCE_DIR/Darwin
- distribution_method: app-store
- project_path: $BITRISE_PROJECT_PATH
- scheme: $BITRISE_SCHEME
- xcode-archive@5:
inputs:
- project_path: $BITRISE_PROJECT_PATH
- scheme: $BITRISE_SCHEME
- distribution_method: $BITRISE_DISTRIBUTION_METHOD
- automatic_code_signing: api-key
- register_test_devices: "no"
- deploy-to-itunesconnect-deliver@2:
inputs:
- itunescon_user: $APPLE_ID
- api_key_path: ""
- api_issuer: $ASC_ISSUER_ID
- submit_for_review: "no"
- skip_metadata: "yes"
- skip_screenshots: "yes"
# ── Full release → App Store ───────────────────────────────────────────────
release:
description: Build, sign, and upload to App Store
description: Build, sign, push metadata, upload binary to App Store
envs:
- ASC_KEY_ID: $ASC_KEY_ID
- ASC_ISSUER_ID: $ASC_ISSUER_ID
- ASC_KEY_CONTENT: $ASC_KEY_CONTENT
- ITC_TEAM_ID: $ITC_TEAM_ID
steps:
- git-clone@8: {}
- script@1:
title: Verify secrets
title: Verify ASC secrets
inputs:
- content: |
if [ -z "$ASC_KEY_ID" ] || [ -z "$DEVELOPMENT_TEAM" ]; then
echo "ERROR: ASC_KEY_ID / ASC_ISSUER_ID / ASC_KEY_CONTENT / DEVELOPMENT_TEAM must be set in Bitrise Secrets"
if [ -z "$ASC_KEY_ID" ]; then
echo "ERROR: ASC_KEY_ID is empty"
exit 1
fi
echo "ASC_KEY_ID is set (length: ${#ASC_KEY_ID})"
echo "ASC_ISSUER_ID is set (length: ${#ASC_ISSUER_ID})"
echo "ASC_KEY_CONTENT is set (length: ${#ASC_KEY_CONTENT})"
echo "DEVELOPMENT_TEAM is set (length: ${#DEVELOPMENT_TEAM})"
- script@1:
title: Set build number
@@ -82,22 +114,21 @@ workflows:
cd $BITRISE_SOURCE_DIR
sed -i '' "s/CURRENT_PROJECT_VERSION = .*/CURRENT_PROJECT_VERSION = $BITRISE_BUILD_NUMBER/" Skip.env
- script@1:
title: Write code signing team and App Store Connect API key
title: Write code signing team
inputs:
- content: |
echo "DEVELOPMENT_TEAM = $DEVELOPMENT_TEAM" >> "$BITRISE_SOURCE_DIR/Darwin/fastlane/AppStore.xcconfig"
# ASC_KEY_CONTENT is the raw multi-line .p8 PEM content — build
# the JSON with Ruby's encoder so its embedded newlines get
# escaped correctly instead of breaking the JSON string.
export APIKEY_PATH="$BITRISE_SOURCE_DIR/Darwin/fastlane/apikey.json"
ruby -rjson -e '
File.write(ENV["APIKEY_PATH"], JSON.generate({
"key_id" => ENV["ASC_KEY_ID"],
"issuer_id" => ENV["ASC_ISSUER_ID"],
"key" => ENV["ASC_KEY_CONTENT"],
"in_house" => false
}))
'
- manage-ios-code-signing@2:
inputs:
- distribution_method: app-store
- project_path: $BITRISE_PROJECT_PATH
- scheme: $BITRISE_SCHEME
- xcode-archive@5:
inputs:
- project_path: $BITRISE_PROJECT_PATH
- scheme: $BITRISE_SCHEME
- distribution_method: $BITRISE_DISTRIBUTION_METHOD
- automatic_code_signing: api-key
- fastlane@3:
inputs:
- lane: release