Pipelines automatisés avec Fastlane et GitHub Actions
Compilez, signez et publiez automatiquement sur les boutiques avec les lanes Fastlane et les flux de travail Actions.
Pipelines automatisés avec Fastlane et GitHub Actions est une leçon Flutter Mobile Development gratuite sur CoddyKit. Ceci est la leçon 2 sur 4. Tu peux lire la leçon complète ci-dessous gratuitement — puis la pratiquer en direct dans le navigateur avec un éditeur de code intégré et un tuteur IA 24/7. Elle fait partie du parcours d'apprentissage Flutter Mobile Development, et ta progression se synchronise sur le web et l'application CoddyKit. Le cours Flutter Mobile Development comprend 4 leçons au total.
Certaines parties de cette leçon n'ont pas encore été traduites et s'affichent en anglais.
Why Automate Flutter Releases
Shipping a Flutter app to both stores by hand is slow and error-prone: bumping versions, building IPA/AAB, signing, uploading, and writing release notes for every platform.
A CI/CD pipeline turns this into a single trigger. We combine two tools:
- Fastlane — Ruby-based automation for the iOS and Android store steps (signing, building, uploading to TestFlight / Play Console).
- GitHub Actions — the orchestrator that checks out code, sets up Flutter, and invokes Fastlane on a hosted runner.
Think of GitHub Actions as the conductor and Fastlane lanes as the per-platform musicians.
Version and Build Number Strategy
Stores reject uploads that reuse a build number. Your pipeline must compute a fresh, monotonically increasing number on every run.
In Flutter, pubspec.yaml holds version: 1.4.0+57 where 1.4.0 is the user-facing name and 57 is the build number. A common CI pattern is to feed the GitHub Actions run number into the build.
Here is a small Dart helper that derives the full version string from a base name and a CI counter.
void main() {
String buildVersion(String name, int ciRunNumber) {
if (ciRunNumber < 1) {
throw ArgumentError('Build number must be >= 1');
}
return '$name+$ciRunNumber';
}
print(buildVersion('1.4.0', 57)); // 1.4.0+57
print(buildVersion('2.0.0', 120)); // 2.0.0+120
}Anatomy of a Fastlane Lane
Fastlane configuration lives in a Fastfile (Ruby). A lane is a named sequence of actions for one task on one platform.
For Android, a release lane typically builds the App Bundle with Flutter, then uploads it to a Play Console track:
sh 'flutter build appbundle --release'— produces the signed.aab.upload_to_play_store— pushes it to the internal or production track.
The track parameter is the key decision: start on internal for QA, promote to production later.
An Android Fastlane Lane
This is a typical android/fastlane/Fastfile. Fastlane runs from the android/ directory, so we call Flutter from the project root with ...
Note how the lane uploads to the internal track first and skips the metadata/images upload, which avoids accidental store-listing changes from CI.
default_platform(:android)
platform :android do
desc 'Build and upload AAB to the internal track'
lane :beta do
sh 'flutter build appbundle --release'
upload_to_play_store(
track: 'internal',
aab: '../build/app/outputs/bundle/release/app-release.aab',
skip_upload_metadata: true,
skip_upload_images: true,
skip_upload_screenshots: true
)
end
endAn iOS Fastlane Lane
The iOS lane builds an IPA and ships it to TestFlight. Code signing on CI uses match, which stores certificates and provisioning profiles in a private Git repo and installs them on the runner.
setup_ci— creates a temporary keychain so signing works on an ephemeral runner.match(type: 'appstore', readonly: true)— fetches signing assets without regenerating them.upload_to_testflight— distributes the build to internal testers.
default_platform(:ios)
platform :ios do
desc 'Build and upload to TestFlight'
lane :beta do
setup_ci
match(type: 'appstore', readonly: true)
sh 'flutter build ipa --release --export-options-plist=ExportOptions.plist'
upload_to_testflight(
ipa: '../build/ios/ipa/Runner.ipa',
skip_waiting_for_build_processing: true
)
end
endSecrets Belong in the Vault
Never commit signing keys, the Play service-account JSON, or App Store Connect API keys. Store them as encrypted GitHub Actions secrets and inject them as environment variables at runtime.
Common secrets for a Flutter pipeline:
PLAY_STORE_JSON_KEY— Google Play service account credentials.APP_STORE_CONNECT_API_KEY— ASC key for TestFlight uploads.MATCH_PASSWORDandMATCH_GIT_BASIC_AUTH— to decrypt the match repo.ANDROID_KEYSTORE_BASE64— your upload keystore, base64-encoded.
A small Dart validator can fail fast if a required variable is missing before any expensive build step runs.
void main() {
List<String> missingSecrets(Map<String, String?> env, List<String> required) {
return required.where((k) {
final v = env[k];
return v == null || v.trim().isEmpty;
}).toList();
}
final fakeEnv = {
'PLAY_STORE_JSON_KEY': '{...}',
'MATCH_PASSWORD': '',
};
final required = ['PLAY_STORE_JSON_KEY', 'MATCH_PASSWORD', 'ASC_KEY'];
final missing = missingSecrets(fakeEnv, required);
if (missing.isNotEmpty) {
print('Missing secrets: ${missing.join(', ')}');
} else {
print('All secrets present');
}
}The GitHub Actions Workflow
The workflow YAML lives in .github/workflows/release.yml. It defines when the pipeline runs and which runner executes it.
Key choices:
- Trigger: run on a pushed tag like
v*so only intentional releases fire. - Runner: Android jobs can use
ubuntu-latest; iOS must usemacos-latestbecause Xcode is required. - Matrix or separate jobs let both platforms build in parallel.
Each job checks out code, runs subosito/flutter-action to install the SDK, then calls the matching Fastlane lane.
A Release Workflow YAML
This workflow fires on a version tag and builds both platforms in parallel jobs. Notice the iOS job runs on macOS and the Android job on Ubuntu.
Secrets flow in through the env block, so Fastlane and match read them without any value being written to disk in plaintext.
name: Release
on:
push:
tags: ['v*']
jobs:
android:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- uses: subosito/flutter-action@v2
with: { channel: stable }
- run: flutter pub get
- run: bundle exec fastlane beta
working-directory: android
env:
PLAY_STORE_JSON_KEY: ${{ secrets.PLAY_STORE_JSON_KEY }}
ios:
runs-on: macos-latest
steps:
- uses: actions/checkout@v4
- uses: subosito/flutter-action@v2
with: { channel: stable }
- run: flutter pub get
- run: bundle exec fastlane beta
working-directory: ios
env:
MATCH_PASSWORD: ${{ secrets.MATCH_PASSWORD }}Gate the Pipeline with Tests
A release pipeline should never ship a red build. Run flutter analyze and flutter test in an early job and make the build jobs depend on it via needs:.
If any step exits non-zero, GitHub Actions stops the pipeline. You can mirror this gating logic in Dart: a release is allowed only when analysis is clean and all tests pass.
void main() {
bool canRelease({
required bool analyzeClean,
required int testsPassed,
required int testsTotal,
}) {
return analyzeClean && testsTotal > 0 && testsPassed == testsTotal;
}
print(canRelease(analyzeClean: true, testsPassed: 42, testsTotal: 42));
print(canRelease(analyzeClean: true, testsPassed: 41, testsTotal: 42));
print(canRelease(analyzeClean: false, testsPassed: 42, testsTotal: 42));
}Observability: Crash and Build Reporting
Shipping is only half the story — you need to know what happens after release. Wire observability in two places:
- App side: integrate Firebase Crashlytics or Sentry so production crashes are reported with stack traces and the exact build number.
- Pipeline side: upload dSYM/ProGuard symbol files during the Fastlane lane (e.g.
upload_symbols_to_crashlytics) so crash reports are de-obfuscated.
Always tag reports with the same build number your pipeline generated, so a crash maps back to a specific commit and CI run.
import 'dart:async';
void main() {
runZonedGuarded(() {
// Simulated app start that throws in production code.
throw StateError('Null user session at startup');
}, (error, stack) {
// In a real app this would call Crashlytics.recordError.
final report = {
'build': 57,
'error': error.toString(),
'firstFrame': stack.toString().split('\n').first,
};
print('Reported crash: $report');
});
}Promotion and Staged Rollout
Mature pipelines do not push straight to 100% of users. Two safety patterns:
- Track promotion: CI uploads to
internal; a separate manually-triggered job promotes the same artifact toproduction. - Staged rollout: release to a fraction of users first, then increase. Fastlane's
upload_to_play_storeacceptsrollout: '0.1'for a 10% start.
This Dart snippet models a rollout schedule that doubles exposure each day, capped at 100%.
void main() {
List<double> rolloutSchedule(double start, int days) {
final stages = <double>[];
var pct = start;
for (var i = 0; i < days; i++) {
stages.add(double.parse(pct.clamp(0.0, 1.0).toStringAsFixed(2)));
pct *= 2;
}
return stages;
}
print(rolloutSchedule(0.1, 5)); // [0.1, 0.2, 0.4, 0.8, 1.0]
}Quick Check: Runner Choice
Test your understanding of the platform constraints in a Flutter release pipeline.
Recap
You built a mental model of a production Flutter release pipeline:
- GitHub Actions orchestrates; Fastlane lanes handle per-platform store work.
- Derive a unique build number per run from the CI counter and
pubspec.yaml. - Android lanes build an
.aabandupload_to_play_store; iOS lanes usematch+upload_to_testflight. - Keep keys in encrypted secrets; validate they exist before building.
- Run on the right runner — macos-latest for iOS, ubuntu for Android.
- Gate releases behind
flutter analyzeandflutter testwithneeds:. - Close the loop with crash reporting, symbol upload, and staged rollout.
Tag a commit with v1.4.0 and your whole release runs itself.
Questions Fréquemment Posées
La leçon « Pipelines automatisés avec Fastlane et GitHub Actions » est-elle gratuite ?
Oui — le texte complet de « Pipelines automatisés avec Fastlane et GitHub Actions » est gratuit à lire ici sur le web. Pour la pratiquer de manière interactive (un éditeur de code intégré et un tuteur IA 24/7) et déverrouiller le reste du cours Flutter Mobile Development, passe à CoddyKit PRO. Le cours Flutter Mobile Development comprend 4 leçons au total.
Qu'est-ce que j'apprendrai dans « Pipelines automatisés avec Fastlane et GitHub Actions » ?
Compilez, signez et publiez automatiquement sur les boutiques avec les lanes Fastlane et les flux de travail Actions. Tu pratiques Flutter Mobile Development avec du code pratique que tu exécutes directement dans le navigateur, et un tuteur IA 24/7 répond à tes questions au fur et à mesure que tu avances dans la leçon.
Dois-je avoir de l'expérience pour commencer Flutter Mobile Development ?
Aucune expérience préalable n'est requise. Flutter Mobile Development sur CoddyKit est structuré pour les débutants jusqu'aux apprenants avancés, donc tu peux commencer ici ou depuis le début et avancer à ton rythme. Ceci est la leçon 2 sur 4.
Combien de temps prend la leçon « Pipelines automatisés avec Fastlane et GitHub Actions » ?
La plupart des leçons CoddyKit prennent environ 5–10 minutes. Chacune est courte et interactive, tu progresses régulièrement et tu repiques exactement où tu t'es arrêté sur le web et l'app.
Peux-tu écrire et exécuter du code dans cette leçon Flutter Mobile Development ?
Oui. Chaque leçon Flutter Mobile Development inclut un éditeur de code intégré, tu écris et exécutes du vrai code directement dans ton navigateur et tu reçois des retours IA instantanés — aucune configuration locale requise.
Toutes les leçons de ce cours
- Variantes de compilation et configuration de l’environnement
- Pipelines automatisés avec Fastlane et GitHub Actions
- Rapports de plantage et traces de pile symbolisées
- Configuration distante, indicateurs de fonctionnalité et déploiements progressifs