Write access to dotorg.svn

Requesting write access for myself to commit to dotorg.svn, as I’m working on the bbPressbbPress Free, open source software built on top of WordPress for easily creating forums on sites. https://bbpress.org ticket backlog, and a few hotfixes for the WordPress.orgWordPress.org The community site where WordPress code is created and shared by the users. This is where you can download the source code for WordPress core, plugins and themes as well as the central location for community conversations and organization. https://wordpress.org/ Forums have been necessary along the way.

(Konstantin was kind enough to help the past 2 times 💪 but I’d prefer to be more helpful broadly than burdensome to anyone.)

Thank you! #prio3

Please can I get access…

Please can I get access to the Google Analytics property for the Mercantile store? I’m overhauling the store and want to track orders and conversions properly.

As far as I can tell, the shared .org GTM container (GTM-P24PF4B) routes mercantile.wordpress.orgWordPress.org The community site where WordPress code is created and shared by the users. This is where you can download the source code for WordPress core, plugins and themes as well as the central location for community conversations and organization. https://wordpress.org/ to GA4 property G-2R4NZ1XYDP, but I haven’t been able to find out who administers it. Recording purchases will also need a purchase event tag in that container, so access to the container (or someone who can add the tag) would help too.

Thanks!

#prio2

Hi there, I require super…

Hi there, I require super admin access so I can work in the Sponsor invoices dashboard. I get a message “You ARE proxied, but do not have super-admin capabilities.”

This is for my daily tasks as part of Team Comet. I previously requested basic MC access in this request, fwiw. Thanks!

#prio1

Installing npm v12 on the build server

Could npm 12 be installed on the wordpress.orgWordPress.org The community site where WordPress code is created and shared by the users. This is where you can download the source code for WordPress core, plugins and themes as well as the central location for community conversations and organization. https://wordpress.org/ build server? The latest release is 12.2.0. This follows the same pattern as Installing Node.js 24 on the build server.

npm 12 is a security release. Dependency install scripts, git dependencies and remote URLURL A specific web address of a website or web page on the Internet, such as a website’s URL www.wordpress.org dependencies all become opt-in, per RFC 54 and the breaking changes announcement.

Unlike previous majors, it will not arrive with a Node.js upgrade. The Node.js Release WG decided not to ship it on Node.js 22, 24 or 26, so it has to be installed explicitly, as Node.js itself was.

Requirements

npm 12 requires Node.js ^22.22.2 || ^24.15.0 || >=26.0.0, which the build server already satisfies.

While you are in there, it would be good to move Node.js 24.x to the latest release. It has been on 24.18.0 since June, several releases behind 24.21.0, the latest at the time of writing.

Installation

npm install --global npm@12

Verification

node --version   # expect v24.21.0 or newer
npm --version    # expect 12.2.0 or newer

Older branches

The remaining older release branches are being updated to Node.js 24.x in parallel, so this does not need to wait on them.

Readiness

The PRs to make the flip are ready:

  • GutenbergGutenberg The Gutenberg project is the new Editor Interface for WordPress. The editor improves the process and experience of creating new content, making writing rich content much simpler. It uses ‘blocks’ to add richness rather than shortcodes, custom HTML etc. https://wordpress.org/gutenberg/: #82732
  • wordpress-develop: #13536

Preparatory work: wordpress-develop#13505, Gutenberg#82235, Gutenberg#82775.

Tracked in Gutenberg#82328.

CC: @desrosj, @aduth, @sirreal, @jsnajdr, @lancewillett

Read-only access to package release codebase

Please grant read-only access to the code that builds WordPress release packages for @lancewillett, @lucatume and @adrianmoldovanwp

Context: We’re looking for the path from a core.svn tag to the release ZIPs, including the partial-update and localized packages, and the build step from develop.svn to core.svn.

Purpose: to aid with security release process work. With read access we can build a private rehearsal of certain build and package steps, including automated checks for each package to match the tag it was built from.

(For now, we don’t need write or deployDeploy Launching code from a local development environment to the production web server, so that it's available to visitors. rights.)

#prio2 #mc

Using headless browsers to access WordPress Core Trac

With the implementation of the JavaScript block to access https://core.trac.wordpress.org/, it is no longer possible for grunt patch wordpress to access tracTrac Trac is the place where contributors create issues for bugs or feature requests much like GitHub.https://core.trac.wordpress.org/. and pull in patches for contributors. In response, a suggestion has been made to use a headless version of chrome to bypass this.

Is systems ok with this being shipped as a part of the developer workflow for coreCore Core is the set of software required to run WordPress. The Core Development Team builds WordPress. or are there objections to an official project circumventing them?

#prio3

Trigger update-related test workflows in wordpress-develop during release process

The wordpress-develop repository on GitHubGitHub GitHub is a website that offers online implementation of git repositories that can easily be shared, copied and modified by other developers. Public repositories are free to host, private repositories require a paid subscription. GitHub introduced the concept of the ‘pull request’ where code changes done in branches by contributors can be reviewed and discussed before being merged by the repository owner. https://github.com/ has two workflows that test a handful of scenarios related to updating or installing a WordPress site:

Currently they confirm that there are no errors while upgrading from previous versions of WordPress or installing a new site followed by a series of smoke tests, but there are plans to expand these to cover more scenarios and types of testing.

During a typical release, both workflows are run manually by a contributor with high enough privileges to do so. However, this is often missed, and is very tedious when dozens of security updates are being released. The workflows also can only test an upcoming release after the packages for a given version are generated and published to WordPress.orgWordPress.org The community site where WordPress code is created and shared by the users. This is where you can download the source code for WordPress core, plugins and themes as well as the central location for community conversations and organization. https://wordpress.org/ because they rely on downloading WordPress using WP-CLIWP-CLI WP-CLI is the Command Line Interface for WordPress, used to do administrative and development tasks in a programmatic way. The project page is http://wp-cli.org/ https://make.wordpress.org/cli/.

Could a workflow dispatch request be added to w.org that is sent after packages for a release have been built and pushed to wordpress.org so that this happens automatically? As an example, I believe that something like this using curl is all that’s required for upgrade-testing.yml:

curl --fail-with-body --silent --show-error \
  --request POST \
  --url "https://api.github.com/repos/WordPress/wordpress-develop/actions/workflows/upgrade-testing.yml/dispatches" \
  --header "Accept: application/vnd.github+json" \
  --header "Authorization: Bearer ${GH_DISPATCH_TOKEN}" \
  --header "Content-Type: application/json" \
  --data '{
    "ref": "trunk",
    "inputs": {
      "new-version": "${NEWLY_PACKAGED_VERSION}"
    }
  }'

For install-testing.yml, the inputs are slightly different:

curl --fail-with-body --silent --show-error \
  --request POST \
  --url "https://api.github.com/repos/WordPress/wordpress-develop/actions/workflows/install-testing.yml/dispatches" \
  --header "Accept: application/vnd.github+json" \
  --header "Authorization: Bearer ${GH_DISPATCH_TOKEN}" \
  --header "Content-Type: application/json" \
  --data '{
    "ref": "trunk",
    "inputs": {
      "wp-version": "${NEWLY_PACKAGED_VERSION}"
    }
  }'

The GH_DISPATCH_TOKEN would ideally be configured through a GitHub App, but a fine-grained personal access token would also work if that’s not an option.

Thanks!

#prio2

We would need access to…

We would need access to the repo https://github.com/WordPress/wp-ai-scanner for me davidperezgar and frantorres from PluginsTeam.
Thanks!

Access to pluginrepo Can I…

Access to pluginrepo
Can I have access to the posts in here?
https://make.wordpress.org/pluginrepo/**
Thanks!

dotorg.svn write access

Similar to this request, I’d like to request write access to commit to dotorg.svn, as our team is currently working on WordPress.orgWordPress.org The community site where WordPress code is created and shared by the users. This is where you can download the source code for WordPress core, plugins and themes as well as the central location for community conversations and organization. https://wordpress.org/ and related plugins.

Thank you.