forgejo/.github/workflows/ci.yaml
Adam Moussa 530bd7210e
feat(terraform): migrate forgejo to HCP Terraform
Move the prod host onto workspace forgejo-prod in the After Hours VPC and freeze CDK push deploys so cutover can happen without applying into seahaven-prod.
2026-09-29 18:36:17 -04:00

57 lines
1.8 KiB
YAML

name: CI
# Converted HCP caller. ci-complete aggregates the portions. The CDK job id
# stays `ci` so the org "main branch protection" ruleset still sees `ci / ci`
# until this repo is moved onto "CI complete".
on:
pull_request:
branches: [main, hotfix/**, release/**]
merge_group:
push:
branches: [hotfix/**, release/**]
permissions:
contents: read
jobs:
autofix:
if: github.event_name == 'pull_request' && !github.event.pull_request.head.repo.fork
uses: Sea-Haven-Industries/.github/.github/workflows/ci-autofix.yaml@ee5b843ca105422b679c3fdeb9eaa68c6e500a85 # v1.0.20
permissions:
contents: write
secrets: inherit
with:
presets: terraform
terraform-version: "1.16.0"
ci:
needs: autofix
if: always() && !cancelled() && (needs.autofix.result == 'skipped' || needs.autofix.outputs.committed != 'true')
uses: Sea-Haven-Industries/.github/.github/workflows/ci-typescript-cdk.yaml@ee5b843ca105422b679c3fdeb9eaa68c6e500a85 # v1.0.20
with:
node-version: "24"
enable-qemu: true
terraform:
needs: autofix
if: always() && !cancelled() && (needs.autofix.result == 'skipped' || needs.autofix.outputs.committed != 'true')
uses: Sea-Haven-Industries/.github/.github/workflows/ci-terraform.yaml@ee5b843ca105422b679c3fdeb9eaa68c6e500a85 # v1.0.20
with:
terraform-version: "1.16.0"
ci-complete:
name: ci-complete
needs: [autofix, ci, terraform]
if: always() && !cancelled() && (needs.autofix.result == 'skipped' || needs.autofix.outputs.committed != 'true')
runs-on: ubuntu-latest
timeout-minutes: 5
steps:
- name: Require portions
env:
CI: ${{ needs.ci.result }}
TERRAFORM: ${{ needs.terraform.result }}
run: |
set -euo pipefail
test "${CI}" = success
test "${TERRAFORM}" = success