mirror of
https://github.com/Sea-Haven-Industries/.github.git
synced 2026-09-30 04:43:12 +00:00
Merge branch 'main' into chore/remove-retired-review-tooling
This commit is contained in:
commit
8d8d832757
15 changed files with 133 additions and 0 deletions
3
.github/workflows/ci-dotnet.yaml
vendored
3
.github/workflows/ci-dotnet.yaml
vendored
|
|
@ -20,6 +20,9 @@ on:
|
|||
type: boolean
|
||||
default: true
|
||||
|
||||
permissions:
|
||||
contents: read
|
||||
|
||||
jobs:
|
||||
ci:
|
||||
runs-on: ubuntu-latest
|
||||
|
|
|
|||
3
.github/workflows/ci-python-sam.yaml
vendored
3
.github/workflows/ci-python-sam.yaml
vendored
|
|
@ -44,6 +44,9 @@ on:
|
|||
type: boolean
|
||||
default: true
|
||||
|
||||
permissions:
|
||||
contents: read
|
||||
|
||||
jobs:
|
||||
ci:
|
||||
runs-on: ubuntu-latest
|
||||
|
|
|
|||
3
.github/workflows/ci-typescript-cdk.yaml
vendored
3
.github/workflows/ci-typescript-cdk.yaml
vendored
|
|
@ -56,6 +56,9 @@ on:
|
|||
type: string
|
||||
default: "template.yaml"
|
||||
|
||||
permissions:
|
||||
contents: read
|
||||
|
||||
jobs:
|
||||
ci:
|
||||
runs-on: ubuntu-latest
|
||||
|
|
|
|||
|
|
@ -6,5 +6,9 @@ on:
|
|||
jobs:
|
||||
deploy:
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/cd-cdk.yaml@555d07c3a240689a81668026787eba089df4c975 # main
|
||||
with:
|
||||
# Matches local dev (Node 24 / npm 11, lockfileVersion 3). This is also the
|
||||
# reusable workflow's default — passed explicitly to pin against drift.
|
||||
node-version: "24"
|
||||
secrets:
|
||||
deploy-role-arn: ${{ secrets.AWS_DEPLOY_ROLE_ARN }}
|
||||
|
|
|
|||
7
workflow-templates/ci-dotnet.properties.json
Normal file
7
workflow-templates/ci-dotnet.properties.json
Normal file
|
|
@ -0,0 +1,7 @@
|
|||
{
|
||||
"name": "Sea Haven — CI (.NET)",
|
||||
"description": "Runs dotnet restore, build (Release), and dotnet test for a solution or project via the org reusable workflow.",
|
||||
"iconName": "octicon-checklist",
|
||||
"categories": ["C#", "Continuous integration"],
|
||||
"filePatterns": ["\\.csproj$", "\\.sln$"]
|
||||
}
|
||||
14
workflow-templates/ci-dotnet.yml
Normal file
14
workflow-templates/ci-dotnet.yml
Normal file
|
|
@ -0,0 +1,14 @@
|
|||
name: CI (.NET)
|
||||
on:
|
||||
pull_request:
|
||||
branches: [main]
|
||||
|
||||
jobs:
|
||||
ci:
|
||||
# Job id MUST stay `ci`: the reusable's job is also `ci`, so the check
|
||||
# context resolves to the required `ci / ci`.
|
||||
#
|
||||
# Every input is optional. Common overrides: `solution` (defaults to *.sln
|
||||
# in the working directory), `working-directory`, and `dotnet-version`
|
||||
# (defaults to 8.0.x). This reusable has no `node-version` input.
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/ci-dotnet.yaml@555d07c3a240689a81668026787eba089df4c975 # main
|
||||
|
|
@ -6,3 +6,7 @@ on:
|
|||
jobs:
|
||||
ci:
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/ci-typescript-cdk.yaml@555d07c3a240689a81668026787eba089df4c975 # main
|
||||
with:
|
||||
# Matches local dev (Node 24 / npm 11, lockfileVersion 3). This is also the
|
||||
# reusable workflow's default — passed explicitly to pin against drift.
|
||||
node-version: "24"
|
||||
|
|
|
|||
7
workflow-templates/ci-python-app.properties.json
Normal file
7
workflow-templates/ci-python-app.properties.json
Normal file
|
|
@ -0,0 +1,7 @@
|
|||
{
|
||||
"name": "Sea Haven — CI (Python / app)",
|
||||
"description": "Runs ruff check, ruff format --check, a pytest collect-only import check, and an optional subproject suite via the org reusable workflow. For Python repos that do not deploy via SAM or CDK.",
|
||||
"iconName": "octicon-checklist",
|
||||
"categories": ["Python", "Continuous integration"],
|
||||
"filePatterns": ["requirements.*\\.txt$", "pyproject\\.toml$"]
|
||||
}
|
||||
14
workflow-templates/ci-python-app.yml
Normal file
14
workflow-templates/ci-python-app.yml
Normal file
|
|
@ -0,0 +1,14 @@
|
|||
name: CI (Python / app)
|
||||
on:
|
||||
pull_request:
|
||||
branches: [main]
|
||||
|
||||
jobs:
|
||||
ci:
|
||||
# Job id MUST stay `ci`: the reusable's aggregator job is also `ci`, so the
|
||||
# check context resolves to the required `ci / ci`.
|
||||
#
|
||||
# Every input is optional. Common overrides: `source-dirs` (ruff targets),
|
||||
# `requirements` (non-default requirements file), `subproject-dir` (a
|
||||
# self-contained suite that must run in its own working directory).
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/ci-python-app.yaml@555d07c3a240689a81668026787eba089df4c975 # main
|
||||
7
workflow-templates/ci-static.properties.json
Normal file
7
workflow-templates/ci-static.properties.json
Normal file
|
|
@ -0,0 +1,7 @@
|
|||
{
|
||||
"name": "Sea Haven — CI (Static Site)",
|
||||
"description": "Validates static HTML/CSS/JS sites (S3 + CloudFront repos): htmlhint, JSON-LD parsing, sitemap.xml well-formedness, and internal link resolution via the org reusable workflow.",
|
||||
"iconName": "octicon-checklist",
|
||||
"categories": ["HTML", "Continuous integration"],
|
||||
"filePatterns": ["index\\.html$"]
|
||||
}
|
||||
18
workflow-templates/ci-static.yml
Normal file
18
workflow-templates/ci-static.yml
Normal file
|
|
@ -0,0 +1,18 @@
|
|||
name: CI (Static Site)
|
||||
on:
|
||||
pull_request:
|
||||
branches: [main]
|
||||
|
||||
jobs:
|
||||
ci:
|
||||
# Job id MUST stay `ci`: the reusable's job is also `ci`, so the check
|
||||
# context resolves to the required `ci / ci`.
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/ci-static.yaml@555d07c3a240689a81668026787eba089df4c975 # main
|
||||
with:
|
||||
# Pinned explicitly (handbook): local dev is Node 24 / npm 11, which
|
||||
# generates lockfileVersion 3. Being explicit avoids lockfile drift.
|
||||
node-version: "24"
|
||||
# Defaults to source mode — the checks run against the repo root. For a
|
||||
# templated site (Eleventy, Astro), add `build-command` plus `check-dir`
|
||||
# so the checks validate the BUILT output that actually ships; otherwise
|
||||
# they pass vacuously against source templates that contain no HTML.
|
||||
|
|
@ -0,0 +1,7 @@
|
|||
{
|
||||
"name": "Sea Haven — CI (TypeScript / frontend)",
|
||||
"description": "Runs the Sea Haven standards gate, format:check, lint, build, unit tests, and a Playwright browser smoke for bundled Vite/React/Vue apps via the org reusable workflow.",
|
||||
"iconName": "octicon-checklist",
|
||||
"categories": ["TypeScript", "JavaScript", "Continuous integration"],
|
||||
"filePatterns": ["package\\.json$", "vite\\.config\\.[jt]s$", "playwright\\.config\\.[jt]s$"]
|
||||
}
|
||||
14
workflow-templates/ci-typescript-frontend.yml
Normal file
14
workflow-templates/ci-typescript-frontend.yml
Normal file
|
|
@ -0,0 +1,14 @@
|
|||
name: CI (TypeScript / frontend)
|
||||
on:
|
||||
pull_request:
|
||||
branches: [main]
|
||||
|
||||
jobs:
|
||||
ci:
|
||||
# Job id MUST stay `ci`: the reusable's job is also `ci`, so the check
|
||||
# context resolves to the required `ci / ci`.
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/ci-typescript-frontend.yaml@555d07c3a240689a81668026787eba089df4c975 # main
|
||||
with:
|
||||
# Pinned explicitly (handbook): local dev is Node 24 / npm 11, which
|
||||
# generates lockfileVersion 3. Being explicit avoids lockfile drift.
|
||||
node-version: "24"
|
||||
7
workflow-templates/mobile-ios-deploy.properties.json
Normal file
7
workflow-templates/mobile-ios-deploy.properties.json
Normal file
|
|
@ -0,0 +1,7 @@
|
|||
{
|
||||
"name": "Sea Haven — Deploy (iOS / TestFlight)",
|
||||
"description": "Builds the iOS app with Fastlane and uploads it to TestFlight on push to main, using the org reusable cd-mobile-ios workflow. Requires the AWS_DEPLOY_ROLE_ARN, MATCH_PASSWORD, ASC_KEY_ID, ASC_ISSUER_ID and ASC_KEY_CONTENT repo secrets.",
|
||||
"iconName": "octicon-rocket",
|
||||
"categories": ["Deployment", "Mobile", "JavaScript"],
|
||||
"filePatterns": ["Gemfile$", "app\\.json$", "metro\\.config\\.[cm]?js$"]
|
||||
}
|
||||
21
workflow-templates/mobile-ios-deploy.yml
Normal file
21
workflow-templates/mobile-ios-deploy.yml
Normal file
|
|
@ -0,0 +1,21 @@
|
|||
name: Deploy (iOS / TestFlight)
|
||||
on:
|
||||
push:
|
||||
branches: [main]
|
||||
|
||||
jobs:
|
||||
deploy:
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/cd-mobile-ios.yaml@555d07c3a240689a81668026787eba089df4c975 # main
|
||||
with:
|
||||
# Pinned explicitly (handbook): local dev is Node 24 / npm 11, which
|
||||
# generates lockfileVersion 3. Being explicit avoids lockfile drift.
|
||||
node-version: "24"
|
||||
secrets:
|
||||
# All five are required. deploy-role-arn is the repo's OIDC role, used
|
||||
# here to read the fastlane match certificate store from S3; the four
|
||||
# asc-*/match-* values come from App Store Connect and the match repo.
|
||||
deploy-role-arn: ${{ secrets.AWS_DEPLOY_ROLE_ARN }}
|
||||
match-password: ${{ secrets.MATCH_PASSWORD }}
|
||||
asc-key-id: ${{ secrets.ASC_KEY_ID }}
|
||||
asc-issuer-id: ${{ secrets.ASC_ISSUER_ID }}
|
||||
asc-key-content: ${{ secrets.ASC_KEY_CONTENT }}
|
||||
Loading…
Add table
Reference in a new issue