mirror of
https://github.com/Sea-Haven-Industries/seahaven-site.git
synced 2026-10-02 10:43:13 +00:00
Prod still ships on merge to main. Exec roles leave this workspace, and the deploy reads the bucket and distribution from SSM.
52 lines
1.5 KiB
YAML
52 lines
1.5 KiB
YAML
name: Deploy
|
|
|
|
# Static-site CD. The org reusable builds _site/, syncs the bucket root, and
|
|
# invalidates CloudFront. Terraform owns the bucket and the distribution.
|
|
# Nothing here creates an HCP run.
|
|
#
|
|
# push to main -> prod
|
|
# weekday cron -> prod (Paychex listings, no commit)
|
|
# workflow_dispatch -> prod
|
|
#
|
|
# Vercel previews branches other than main.
|
|
|
|
on:
|
|
push:
|
|
branches: [main]
|
|
paths-ignore:
|
|
- "terraform/**"
|
|
- "**/*.md"
|
|
- ".github/workflows/ci.yaml"
|
|
- ".github/workflows/labeler.yml"
|
|
- ".github/workflows/dependency-review.yml"
|
|
schedule:
|
|
# Weekday morning US Eastern (13:00 UTC). Rebuilds listings from Paychex
|
|
# without a commit. A failed feed fetch aborts before the S3 sync.
|
|
- cron: "0 13 * * 1-5"
|
|
workflow_dispatch:
|
|
inputs:
|
|
ref:
|
|
description: "Git ref to build and deploy. Empty means the workflow ref."
|
|
required: false
|
|
type: string
|
|
default: ""
|
|
|
|
permissions:
|
|
contents: read
|
|
|
|
jobs:
|
|
deploy-prod:
|
|
name: Deploy site to prod
|
|
uses: Sea-Haven-Industries/.github/.github/workflows/cd-hcp-static.yaml@74d3bfbdeb670654920b811c9b36f44e5f76d122 # v1.0.19
|
|
permissions:
|
|
contents: read
|
|
id-token: write
|
|
secrets: inherit
|
|
with:
|
|
environment: prod
|
|
ref: ${{ inputs.ref }}
|
|
ssm-prefix: /seahaven-site/deploy
|
|
output-dir: _site
|
|
required-paths: _site/index.html,_site/contact/index.html,_site/404.html
|
|
min-file-count: 40
|
|
ship-gate: true
|