Some checks failed
Monorepo Pipeline / ⚡ Prioritize Release (push) Successful in 1s
Monorepo Pipeline / 🧹 Lint (push) Successful in 57s
Monorepo Pipeline / 🚀 Release (push) Has been cancelled
Monorepo Pipeline / 🐳 Build Directus (Base) (push) Has been cancelled
Monorepo Pipeline / 🐳 Build Gatekeeper (Product) (push) Has been cancelled
Monorepo Pipeline / 🐳 Build Build-Base (push) Has been cancelled
Monorepo Pipeline / 🐳 Build Production Runtime (push) Has been cancelled
Monorepo Pipeline / 🧪 Test (push) Has been cancelled
Monorepo Pipeline / 🏗️ Build (push) Has been cancelled
192 lines
6.3 KiB
YAML
192 lines
6.3 KiB
YAML
name: Monorepo Pipeline
|
|
|
|
on:
|
|
push:
|
|
branches:
|
|
- '**'
|
|
tags:
|
|
- 'v*'
|
|
|
|
concurrency:
|
|
group: ${{ github.workflow }}-${{ github.ref }}
|
|
cancel-in-progress: true
|
|
|
|
jobs:
|
|
prioritize:
|
|
name: ⚡ Prioritize Release
|
|
runs-on: docker
|
|
container:
|
|
image: catthehacker/ubuntu:act-latest
|
|
steps:
|
|
- name: 🛑 Cancel Redundant Runs
|
|
if: startsWith(github.ref, 'refs/tags/v')
|
|
env:
|
|
GITEA_TOKEN: ${{ secrets.GITHUB_TOKEN }}
|
|
REPO: ${{ github.repository }}
|
|
RUN_ID: ${{ github.run_id }}
|
|
run: |
|
|
echo "🚀 Release detected. Cancelling non-tag runs..."
|
|
# Get all runs for this repo
|
|
RUNS=$(curl -s -H "Authorization: token $GITEA_TOKEN" "https://git.infra.mintel.me/api/v1/repos/$REPO/actions/runs")
|
|
|
|
# Iterate and cancel in_progress/queued non-tag runs
|
|
echo "$RUNS" | jq -c '.workflow_runs[] | select(.status == "in_progress" or .status == "queued") | select(.id | tostring != "'$RUN_ID'") | select(.event != "push" or .ref | contains("refs/tags/v") | not)' | while read run; do
|
|
ID=$(echo "$run" | jq -r '.id')
|
|
DESC=$(echo "$run" | jq -r '.display_title')
|
|
echo "🛑 Cancelling redundant run $ID ($DESC)..."
|
|
curl -X POST -s -H "Authorization: token $GITEA_TOKEN" "https://git.infra.mintel.me/api/v1/repos/$REPO/actions/runs/$ID/cancel"
|
|
done
|
|
|
|
lint:
|
|
name: 🧹 Lint
|
|
needs: prioritize
|
|
if: always() && !cancelled() && (needs.prioritize.result == 'success' || needs.prioritize.result == 'skipped')
|
|
runs-on: docker
|
|
container:
|
|
image: catthehacker/ubuntu:act-latest
|
|
env:
|
|
NPM_TOKEN: ${{ secrets.NPM_TOKEN }}
|
|
steps:
|
|
- name: Checkout
|
|
uses: actions/checkout@v4
|
|
- name: Set up Node.js
|
|
uses: actions/setup-node@v4
|
|
with:
|
|
node_version: 20
|
|
- name: Enable pnpm
|
|
run: corepack enable && corepack prepare pnpm@10.2.0 --activate
|
|
- name: Install dependencies
|
|
run: pnpm install --frozen-lockfile --prefer-offline --ignore-scripts --no-color
|
|
- name: Lint
|
|
run: pnpm lint
|
|
|
|
test:
|
|
name: 🧪 Test
|
|
needs: prioritize
|
|
if: always() && !cancelled() && (needs.prioritize.result == 'success' || needs.prioritize.result == 'skipped')
|
|
runs-on: docker
|
|
container:
|
|
image: catthehacker/ubuntu:act-latest
|
|
env:
|
|
NPM_TOKEN: ${{ secrets.NPM_TOKEN }}
|
|
steps:
|
|
- name: Checkout
|
|
uses: actions/checkout@v4
|
|
- name: Set up Node.js
|
|
uses: actions/setup-node@v4
|
|
with:
|
|
node_version: 20
|
|
- name: Enable pnpm
|
|
run: corepack enable && corepack prepare pnpm@10.2.0 --activate
|
|
- name: Install dependencies
|
|
run: pnpm install --frozen-lockfile --prefer-offline --ignore-scripts --no-color
|
|
- name: Test
|
|
run: pnpm test
|
|
|
|
build:
|
|
name: 🏗️ Build
|
|
needs: prioritize
|
|
if: always() && !cancelled() && (needs.prioritize.result == 'success' || needs.prioritize.result == 'skipped')
|
|
runs-on: docker
|
|
container:
|
|
image: catthehacker/ubuntu:act-latest
|
|
env:
|
|
NPM_TOKEN: ${{ secrets.NPM_TOKEN }}
|
|
steps:
|
|
- name: Checkout
|
|
uses: actions/checkout@v4
|
|
- name: Set up Node.js
|
|
uses: actions/setup-node@v4
|
|
with:
|
|
node_version: 20
|
|
- name: Enable pnpm
|
|
run: corepack enable && corepack prepare pnpm@10.2.0 --activate
|
|
- name: Install dependencies
|
|
run: pnpm install --frozen-lockfile --prefer-offline --ignore-scripts --no-color
|
|
- name: Build
|
|
run: pnpm build
|
|
|
|
release:
|
|
name: 🚀 Release
|
|
needs: [lint, test, build]
|
|
if: startsWith(github.ref, 'refs/tags/v')
|
|
runs-on: docker
|
|
container:
|
|
image: catthehacker/ubuntu:act-latest
|
|
env:
|
|
NPM_TOKEN: ${{ secrets.NPM_TOKEN }}
|
|
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
|
|
steps:
|
|
- name: Checkout
|
|
uses: actions/checkout@v4
|
|
with:
|
|
fetch-depth: 0
|
|
- name: Set up Node.js
|
|
uses: actions/setup-node@v4
|
|
with:
|
|
node_version: 20
|
|
- name: Enable pnpm
|
|
run: corepack enable && corepack prepare pnpm@10.2.0 --activate
|
|
- name: Install dependencies
|
|
run: pnpm install --frozen-lockfile --prefer-offline --ignore-scripts --no-color
|
|
- name: 🏷️ Sync Versions (if Tagged)
|
|
run: pnpm sync-versions
|
|
- name: 🏷️ Release Packages (Tag-Driven)
|
|
run: |
|
|
echo "🏷️ Tag detected [${{ github.ref_name }}], performing sync release..."
|
|
pnpm release:tag
|
|
|
|
build-images:
|
|
name: 🐳 Build ${{ matrix.name }}
|
|
needs: [lint, test, build]
|
|
if: startsWith(github.ref, 'refs/tags/v')
|
|
runs-on: docker
|
|
container:
|
|
image: catthehacker/ubuntu:act-latest
|
|
strategy:
|
|
fail-fast: false
|
|
matrix:
|
|
include:
|
|
- image: nextjs
|
|
file: packages/infra/docker/Dockerfile.nextjs
|
|
name: Build-Base
|
|
- image: runtime
|
|
file: packages/infra/docker/Dockerfile.runtime
|
|
name: Production Runtime
|
|
- image: gatekeeper
|
|
file: packages/infra/docker/Dockerfile.gatekeeper
|
|
name: Gatekeeper (Product)
|
|
- image: directus
|
|
file: packages/infra/docker/Dockerfile.directus
|
|
name: Directus (Base)
|
|
steps:
|
|
- name: Checkout
|
|
uses: actions/checkout@v4
|
|
|
|
- name: 🐳 Set up Docker Buildx
|
|
uses: docker/setup-buildx-action@v3
|
|
|
|
- name: 🔐 Registry Login
|
|
uses: docker/login-action@v3
|
|
with:
|
|
registry: registry.infra.mintel.me
|
|
username: ${{ secrets.REGISTRY_USER }}
|
|
password: ${{ secrets.REGISTRY_PASS }}
|
|
|
|
- name: 🏗️ Build & Push ${{ matrix.name }}
|
|
uses: docker/build-push-action@v5
|
|
with:
|
|
context: .
|
|
file: ${{ matrix.file }}
|
|
platforms: linux/arm64
|
|
pull: true
|
|
push: true
|
|
secrets: |
|
|
NPM_TOKEN=${{ secrets.NPM_TOKEN }}
|
|
tags: |
|
|
registry.infra.mintel.me/mintel/${{ matrix.image }}:${{ github.ref_name }}
|
|
registry.infra.mintel.me/mintel/${{ matrix.image }}:latest
|
|
cache-from: type=registry,ref=registry.infra.mintel.me/mintel/${{ matrix.image }}:buildcache
|
|
cache-to: type=registry,ref=registry.infra.mintel.me/mintel/${{ matrix.image }}:buildcache,mode=max
|
|
|