Add mobile CI job and iOS CD workflow (disabled)

CI: adds mobile typecheck job on PRs.
CD: deploy-mobile.yaml builds and uploads to TestFlight via
Fastlane on a macOS runner with OIDC auth for match S3 access.
Currently workflow_dispatch only — activate for V1 release.
This commit is contained in:
Adam Moussa 2026-05-18 14:50:29 -04:00
parent 89365902a6
commit e1534d50ab
2 changed files with 73 additions and 0 deletions

View file

@ -57,6 +57,24 @@ jobs:
- run: ruff check lambdas/
- run: ruff format --check lambdas/
mobile:
name: Mobile Typecheck
runs-on: ubuntu-latest
defaults:
run:
working-directory: mobile
steps:
- uses: actions/checkout@v6
- uses: actions/setup-node@v6
with:
node-version: 24
cache: npm
cache-dependency-path: mobile/package-lock.json
- run: npm ci
- run: npx tsc --noEmit
infra:
name: CDK Synth
runs-on: ubuntu-latest

55
.github/workflows/deploy-mobile.yaml vendored Normal file
View file

@ -0,0 +1,55 @@
name: Deploy Mobile (iOS)
# Disabled during development. To activate for V1 release, change to:
# on:
# push:
# branches: [main]
# paths: ["mobile/**"]
on:
workflow_dispatch:
permissions:
id-token: write
contents: read
jobs:
deploy-ios:
name: Build & Upload to TestFlight
runs-on: macos-latest
defaults:
run:
working-directory: mobile
timeout-minutes: 45
steps:
- uses: actions/checkout@v6
- uses: aws-actions/configure-aws-credentials@v6
with:
role-to-assume: ${{ secrets.AWS_DEPLOY_ROLE_ARN }}
aws-region: us-east-1
- uses: actions/setup-node@v6
with:
node-version: 24
cache: npm
cache-dependency-path: mobile/package-lock.json
- uses: ruby/setup-ruby@v1
with:
ruby-version: "3.3"
bundler-cache: true
working-directory: mobile
- name: Install JS dependencies
run: npm ci
- name: Install CocoaPods
run: bundle exec pod install --project-directory=ios
- name: Build and upload to TestFlight
run: bundle exec fastlane ios beta
env:
MATCH_PASSWORD: ${{ secrets.MATCH_PASSWORD }}
ASC_KEY_ID: ${{ secrets.ASC_KEY_ID }}
ASC_ISSUER_ID: ${{ secrets.ASC_ISSUER_ID }}
ASC_KEY_CONTENT: ${{ secrets.ASC_KEY_CONTENT }}