Skip to content

chore: get GitHub Access token by gh auth token #31601

chore: get GitHub Access token by gh auth token

chore: get GitHub Access token by gh auth token #31601

Workflow file for this run

---
name: test
on:
pull_request:
branches: [main]
permissions: {}
env:
AQUA_LOG_COLOR: always
jobs:
path-filter:
# Get changed files to filter jobs
outputs:
renovate-config-validator: ${{steps.changes.outputs.renovate-config-validator}}
check-files: ${{steps.changes.outputs.check-files}}
generate-registry: ${{steps.changes.outputs.generate-registry}}
json-schema: ${{steps.changes.outputs.json-schema}}
test-docker: ${{steps.changes.outputs.test-docker}}
runs-on: ubuntu-latest
permissions: {}
steps:
- uses: dorny/paths-filter@0bc4621a3135347011ad047f9ecf449bf72ce2bd # v3.0.0
id: changes
with:
filters: |
renovate-config-validator:
- renovate.json5
- .github/workflows/wc-renovate-config-validator.yaml
check-files:
- pkgs/**/pkg.yaml
- pkgs/**/registry.yaml
- .github/workflows/wc-check-files.yaml
generate-registry:
- aqua/generate-registry.yaml
- registry.yaml
- pkgs/**/registry.yaml
- .github/workflows/wc-generate-registry.yaml
json-schema:
- registry.yaml
- .github/workflows/wc-json-schema.yaml
test-docker:
- docker/*
- scripts/**
- cmdx.yaml
- .github/workflows/wc-test-docker.yaml
status-check:
# This job is used for main branch's branch protection rule's status check.
# If all dependent jobs succeed or are skipped this job succeeds.
runs-on: ubuntu-latest
needs:
- enable-automerge-renovate
- renovate-config-validator
- check-files
- generate-registry
- json-schema
- prettier
- test-docker
- test
permissions: {}
if: failure()
steps:
- run: exit 1
enable-automerge-renovate:
runs-on: ubuntu-latest
environment: renovate
if: |
github.event.pull_request.user.login == 'renovate[bot]' && contains(github.event.pull_request.body, ' **Automerge**: Enabled.')
steps:
- name: Generate token
id: generate_token
uses: tibdex/github-app-token@3beb63f4bd073e61482598c45c71c1019b59b73a # v2.1.0
with:
app_id: ${{secrets.APP_ID}}
private_key: ${{secrets.APP_PRIVATE_KEY}}
- name: Enable auto-merge
run: gh -R "$GITHUB_REPOSITORY" pr merge --squash --auto --delete-branch "$PR_NUMBER"
env:
# github.token is unavailable, because github.token doesn't have a permission to delete a branch `renovate/*`
# pull-requests: write and contents: write are required
GITHUB_TOKEN: ${{steps.generate_token.outputs.token}}
PR_NUMBER: ${{github.event.pull_request.number}}
renovate-config-validator:
# Validate Renovate Configuration by renovate-config-validator.
uses: ./.github/workflows/wc-renovate-config-validator.yaml
needs: path-filter
if: ${{needs.path-filter.outputs.renovate-config-validator == 'true'}}
permissions:
contents: read
check-files:
uses: ./.github/workflows/wc-check-files.yaml
needs: path-filter
if: ${{needs.path-filter.outputs.check-files == 'true'}}
permissions: {}
generate-registry:
uses: ./.github/workflows/wc-generate-registry.yaml
needs: path-filter
if: ${{needs.path-filter.outputs.generate-registry == 'true'}}
permissions: {}
json-schema:
uses: ./.github/workflows/wc-json-schema.yaml
needs: path-filter
if: ${{needs.path-filter.outputs.json-schema == 'true'}}
permissions: {}
prettier:
uses: ./.github/workflows/wc-prettier.yaml
permissions: {}
test-docker:
uses: ./.github/workflows/wc-test-docker.yaml
needs: path-filter
if: ${{needs.path-filter.outputs.test-docker == 'true'}}
ci-info:
runs-on: ubuntu-latest
env:
AQUA_CONFIG: aqua/ci-info.yaml
steps:
- uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
- uses: aquaproj/aqua-installer@7c7338067bdb97d5bea2acc82b5870afca470d18 # v2.3.0
with:
aqua_version: v2.22.0
policy_allow: "true"
env:
AQUA_GITHUB_TOKEN: ${{github.token}}
- uses: suzuki-shunsuke/ci-info-action/store@20bd996e371b27a229a348a09e17db8dcab1f2be # v0.1.2
env:
GITHUB_TOKEN: ${{github.token}}
- run: echo "https://github.com/aquaproj/aqua-registry/pull/$CI_INFO_PR_NUMBER" >> "$GITHUB_STEP_SUMMARY"
test:
needs: ci-info
strategy:
matrix:
env:
- runs-on: windows-latest
- runs-on: ubuntu-latest
- runs-on: macos-latest
- runs-on: ubuntu-latest
goarch: arm64
- runs-on: macos-latest
goos: darwin
goarch: arm64
- runs-on: windows-latest
goarch: arm64
runs-on: ${{ matrix.env.runs-on }}
defaults:
run:
shell: bash
env:
AQUA_CONFIG: aqua/test.yaml
steps:
- uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1
- uses: suzuki-shunsuke/ci-info-action/restore@20bd996e371b27a229a348a09e17db8dcab1f2be # v0.1.2
# - name: Generate token
# id: generate_token
# uses: tibdex/github-app-token@v1
# with:
# app_id: ${{ secrets.APP_ID }}
# private_key: ${{ secrets.APP_PRIVATE_KEY }}
- uses: aquaproj/aqua-installer@7c7338067bdb97d5bea2acc82b5870afca470d18 # v2.3.0
with:
aqua_version: v2.22.0
policy_allow: "true"
env:
AQUA_GITHUB_TOKEN: ${{github.token}}
- uses: aquaproj/registry-action/test@dff21577b6ec277b2645a7a40db12eeb15b4c581 # v0.2.0
with:
goos: ${{ matrix.env.goos }}
goarch: ${{ matrix.env.goarch }}
go_version: "1.21.3"
env:
GITHUB_TOKEN: ${{github.token}}