Compare commits

...
183 Commits
Author SHA1 Message Date
z cf181205c8 docs(brand): add hero banner 2026-06-28 20:26:49 -07:00
z af785d413b chore(brand): dynamic hero banner 2026-06-28 20:26:47 -07:00
Antje WorringandClaude Opus 4.8 67f43f7e48 docs: tidy LLM.md indexes; CLAUDE.md -> LLM.md symlink convention
Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-06-17 09:39:16 -07:00
Antje WorringandClaude Opus 4.8 7ccc2c6ae9 Add Claude Code project docs (CLAUDE.md, LLM.md)
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
2026-05-31 21:42:25 -07:00
myoung34andGitHub bfd552006c Merge pull request #562 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.32.4
2026-02-20 13:05:50 -06:00
renovate[bot]andGitHub df60f37e23 chore(deps): update github/codeql-action action to v4.32.4 2026-02-20 17:13:33 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1f3f78d0b4 chore(deps): update actions/stale action to v10.2.0 (#560)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-02-17 09:58:39 +00:00
myoung34andGitHub 774f3e4fed Merge pull request #559 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.32.3
2026-02-13 11:45:49 -06:00
renovate[bot]andGitHub 86a90b74ec chore(deps): update github/codeql-action action to v4.32.3 2026-02-13 14:53:27 +00:00
myoung34andGitHub 010a090125 Merge pull request #558 from myoung34/bugfix_libyaml
add libyaml-dev
2026-02-10 11:27:50 -06:00
Mark Young 72e782eafe add libyaml-dev 2026-02-10 10:37:17 -06:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
d226d2cf27 chore(deps): update github/codeql-action action to v4.32.2 (#555)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-02-05 21:39:09 +00:00
myoung34andGitHub a2cb123711 Merge pull request #553 from myoung34/renovate/docker-login-action-3.x
chore(deps): update docker/login-action action to v3.7.0
2026-01-28 14:37:13 -06:00
renovate[bot]andGitHub b9d50e3a76 chore(deps): update docker/login-action action to v3.7.0 2026-01-28 17:40:36 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
a536e89d27 chore(deps): update github/codeql-action action to v4.32.0 (#552)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-01-27 00:57:01 +00:00
myoung34andGitHub a46f258a4d Merge pull request #548 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.31.11
2026-01-23 10:13:11 -06:00
renovate[bot]andGitHub 1447a94ad8 chore(deps): update github/codeql-action action to v4.31.11 2026-01-23 14:35:23 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
507584bb65 chore(deps): update actions/checkout action to v6.0.2 (#547)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-01-22 21:43:36 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
3df1f8320c chore(deps): update actions/setup-python action to v6.2.0 (#546)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-01-22 09:49:16 +00:00
myoung34andGitHub 2e8e19fff7 Merge pull request #540 from lauralex/patch-1
feat(entrypoint): add support for RUNNER_LABELS env var
2026-01-16 07:11:53 -06:00
Alessandro BelliaandGitHub ac80687f5e Update label variable to use RUNNER_LABELS (and LABELS as a fallback)
This is to improve compatibility with the helm chart provided at the official ARC repository
2026-01-16 13:07:57 +01:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
82c2396a53 chore(deps): update github/codeql-action action to v4.31.10 (#538)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2026-01-12 20:49:21 +00:00
Marcus Young 37b798677f [Automated 🤖 ] Bump to version 2.331.0 2026-01-09 11:27:55 -06:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
26e27c4871 chore(deps): update docker/setup-buildx-action action to v3.12.0 (#537)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-19 18:42:18 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
003c164c26 chore(deps): update github/codeql-action action to v4.31.9 (#536)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-16 23:49:36 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
f8063d8de2 chore(deps): update github/codeql-action action to v4.31.8 (#535)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-12 16:45:32 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
fa8b40834e chore(deps): update github/codeql-action action to v4.31.7 (#534)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-05 21:45:39 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
5bdaf6246c chore(deps): update actions/stale action to v10.1.1 (#533)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-03 10:48:43 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
49885fa393 chore(deps): update actions/checkout action to v6.0.1 (#532)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-03 03:25:28 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
66b14e7cb0 chore(deps): update actions/checkout digest to 8e8c483 (#531)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-02 21:49:21 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
651ebf98c1 chore(deps): update github/codeql-action action to v4.31.6 (#530)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-12-01 17:59:26 +00:00
myoung34andGitHub af197673bb Merge pull request #529 from myoung34/lsb_release_package
Add lsb-release package
2025-11-27 11:05:28 -06:00
Mark Young 7cc25da08a Add lsb-release package 2025-11-27 10:36:21 -06:00
myoung34andGitHub cc87387e6c Merge pull request #526 from myoung34/renovate/actions-setup-python-6.x
chore(deps): update actions/setup-python action to v6.1.0
2025-11-25 07:03:26 -06:00
renovate[bot]andGitHub f0002ffe94 chore(deps): update actions/setup-python action to v6.1.0 2025-11-25 09:40:17 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
173936ebb1 chore(deps): update actions/setup-python digest to 83679a8 (#525)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-11-25 09:40:10 +00:00
myoung34andGitHub 73c1f986a0 Merge pull request #523 from ElsevierAlex/ENTELLECT-26971-docker-GID-fix
Set fixed Docker GID to avoid collisions with some groups
2025-11-24 11:04:55 -06:00
chorbea a9e86affb1 Add verification docker group exists with GID 500 2025-11-24 15:10:58 +00:00
chorbea 85021afac4 Set fixed Docker GID to avoid collisions with some groups 2025-11-24 15:00:22 +00:00
myoung34andGitHub 6bf4bba93e Merge pull request #524 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.31.5
2025-11-24 07:53:11 -06:00
renovate[bot]andGitHub 86ce2640ba chore(deps): update github/codeql-action action to v4.31.5 2025-11-24 13:53:03 +00:00
myoung34andGitHub 9f88f7608e Merge pull request #521 from myoung34/renovate/actions-checkout-6.x
chore(deps): update actions/checkout action to v6
2025-11-24 07:52:43 -06:00
chorbea ddaa37c029 Set fixed Docker GID to avoid collisions with some groups 2025-11-23 21:15:17 +00:00
renovate[bot]andGitHub b1fc7ef2fa chore(deps): update actions/checkout action to v6 2025-11-20 17:34:10 +00:00
Mark Young e20053eee0 Base has been testing the wrong file 2025-11-19 20:27:42 -06:00
myoung34andGitHub a8eb140d15 Merge pull request #520 from myoung34/app_token_refresh
Refresh app tokens before deregistration
2025-11-19 09:58:13 -06:00
Mark Young 3106b3b872 Refresh app tokens before deregistration 2025-11-19 09:00:18 -06:00
Marcus Young 99ddf3deb5 [Automated 🤖 ] Bump to version 2.330.0 2025-11-19 08:39:26 -06:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1965fcf54a chore(deps): update github/codeql-action action to v4.31.4 (#519)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-11-19 02:38:03 +00:00
myoung34andGitHub bb04589b22 Merge pull request #518 from myoung34/renovate/actions-checkout-5.x
chore(deps): update actions/checkout action to v5.0.1
2025-11-17 11:52:47 -06:00
myoung34andGitHub 3b1fbf252c Merge pull request #517 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.31.3
2025-11-17 11:52:29 -06:00
renovate[bot]andGitHub 7a92f07e5d chore(deps): update actions/checkout action to v5.0.1 2025-11-17 16:34:43 +00:00
renovate[bot]andGitHub 2721f3864b chore(deps): update github/codeql-action action to v4.31.3 2025-11-14 04:28:41 +00:00
myoung34andGitHub c6af777ae1 Merge pull request #516 from myoung34/renovate/docker-setup-qemu-action-3.x
chore(deps): update docker/setup-qemu-action action to v3.7.0
2025-11-05 10:24:27 -06:00
renovate[bot]andGitHub d797173e22 chore(deps): update docker/setup-qemu-action action to v3.7.0 2025-11-05 16:06:51 +00:00
Mark Young a3ec4d85d8 Use latest git-lfs and not hardcode 2025-11-03 11:12:14 -06:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
cea41bbd19 chore(deps): update github/codeql-action action to v4.31.2 (#514)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-10-31 03:53:57 +00:00
myoung34andGitHub 53d1bd4895 Merge pull request #513 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.31.1
2025-10-30 08:11:21 -05:00
renovate[bot]andGitHub a78956f1e6 chore(deps): update github/codeql-action action to v4.31.1 2025-10-30 12:55:27 +00:00
myoung34andGitHub 103a6e4140 Merge pull request #512 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.31.0
2025-10-24 15:33:26 -05:00
renovate[bot]andGitHub ec3ba33aa8 chore(deps): update github/codeql-action action to v4.31.0 2025-10-24 19:47:52 +00:00
myoung34andGitHub 2d6ace9724 Merge pull request #511 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.30.9
2025-10-20 10:18:22 -04:00
renovate[bot]andGitHub 9b252b5c1a chore(deps): update github/codeql-action action to v4.30.9 2025-10-18 02:06:41 +00:00
Marcus Young a03c55289b [Automated 🤖 ] Bump to version 2.329.0 2025-10-14 07:58:18 -07:00
myoung34andGitHub 981c05b17a Merge pull request #509 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4.30.8
2025-10-10 12:34:30 -05:00
renovate[bot]andGitHub a39fdfecc6 chore(deps): update github/codeql-action action to v4.30.8 2025-10-10 17:11:04 +00:00
myoung34andGitHub 105ced306b Merge pull request #508 from myoung34/renovate/github-codeql-action-4.x
chore(deps): update github/codeql-action action to v4
2025-10-07 17:15:14 -05:00
renovate[bot]andGitHub 87133b5219 chore(deps): update github/codeql-action action to v4 2025-10-07 18:56:02 +00:00
myoung34andGitHub f199051a16 Merge pull request #507 from myoung34/renovate/github-codeql-action-3.x
chore(deps): update github/codeql-action action to v3.30.7
2025-10-07 13:55:37 -05:00
renovate[bot]andGitHub bd39b30dd2 chore(deps): update github/codeql-action action to v3.30.7 2025-10-07 18:31:26 +00:00
Mark Young d015ab6e84 hotfix: typo in trixie 2025-10-07 07:46:05 -05:00
myoung34andGitHub 810b895c48 Merge pull request #506 from myoung34/software-properties-common-trixie
Remove software-properties-common to potentially fix trixie (sid?)
2025-10-06 13:41:23 -05:00
Mark Young 1370fbe77b Remove software-properties-common to potentially fix trixie (sid?) 2025-10-06 12:51:29 -05:00
myoung34andGitHub e562eebdb7 Merge pull request #505 from myoung34/renovate/actions-stale-10.x
Update actions/stale action to v10.1.0
2025-10-03 17:01:44 -05:00
renovate[bot]andGitHub 52efdbe1ef Update actions/stale action to v10.1.0 2025-10-03 21:56:15 +00:00
myoung34andGitHub 9c50cd0f4c Merge pull request #503 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.30.6
2025-10-02 09:53:28 -05:00
renovate[bot]andGitHub 9a7da1be13 Update github/codeql-action action to v3.30.6 2025-10-02 14:49:35 +00:00
myoung34andGitHub 3f8ee76e69 Merge pull request #497 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.30.5
2025-09-29 08:50:42 -05:00
myoung34andGitHub d2f9956f6b Merge pull request #500 from myoung34/renovate/docker-login-action-3.x
Update docker/login-action action to v3.6.0
2025-09-29 08:50:28 -05:00
renovate[bot]andGitHub 74b76b9574 Update docker/login-action action to v3.6.0 2025-09-29 12:34:14 +00:00
renovate[bot]andGitHub 4eccecdabb Update github/codeql-action action to v3.30.5 2025-09-26 17:36:39 +00:00
myoung34andGitHub 73f90846a4 Merge pull request #496 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.30.4
2025-09-25 08:40:59 -05:00
renovate[bot]andGitHub 5fbcfc7f50 Update github/codeql-action action to v3.30.4 2025-09-25 13:39:57 +00:00
myoung34andGitHub 20e698df5e Merge pull request #493 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.30.3
2025-09-10 16:50:46 -05:00
renovate[bot]andGitHub b7a1bbfd6f Update github/codeql-action action to v3.30.3 2025-09-10 21:48:32 +00:00
myoung34andGitHub 1ef8e8d109 Merge pull request #492 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.30.2
2025-09-09 07:46:32 -05:00
renovate[bot]andGitHub 9ed9e962e5 Update github/codeql-action action to v3.30.2 2025-09-09 12:40:01 +00:00
myoung34andGitHub 66928a5a35 Merge pull request #491 from myoung34/renovate/actions-stale-10.x
Update actions/stale action to v10
2025-09-06 15:11:38 -05:00
myoung34andGitHub e355f77be3 Merge pull request #490 from myoung34/renovate/actions-setup-python-6.x
Update actions/setup-python action to v6
2025-09-06 15:10:16 -05:00
renovate[bot]andGitHub e745ead4de Update actions/stale action to v10 2025-09-06 20:10:02 +00:00
myoung34andGitHub 301b1e1037 Merge pull request #489 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.30.1
2025-09-06 15:09:45 -05:00
renovate[bot]andGitHub bdc6ad1285 Update actions/setup-python action to v6 2025-09-06 18:49:32 +00:00
renovate[bot]andGitHub a1601ef9da Update github/codeql-action action to v3.30.1 2025-09-06 18:49:28 +00:00
myoung34andGitHub 5651216b4a Merge pull request #486 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.11
2025-08-25 16:12:00 -05:00
renovate[bot]andGitHub d51f27aeee Update github/codeql-action action to v3.29.11 2025-08-21 18:42:55 +00:00
myoung34andGitHub e1f21218bd Merge pull request #485 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.10
2025-08-18 10:18:27 -05:00
renovate[bot]andGitHub 46aaeecf40 Update github/codeql-action action to v3.29.10 2025-08-18 15:02:11 +00:00
Marcus Young 38eb73c946 [Automated 🤖 ] Bump to version 2.328.0 2025-08-13 11:50:10 -05:00
myoung34andGitHub 6f9d5e009f Merge pull request #478 from myoung34/renovate/actions-checkout-5.x
Update actions/checkout action to v5
2025-08-12 11:50:32 -05:00
myoung34andGitHub bb96d0442d Merge pull request #479 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.9
2025-08-12 07:59:46 -05:00
renovate[bot]andGitHub 4bcb02dcec Update github/codeql-action action to v3.29.9 2025-08-12 12:58:40 +00:00
renovate[bot]andGitHub 2cb239d5d3 Update actions/checkout action to v5 2025-08-11 13:40:28 +00:00
myoung34andGitHub 2d228ec756 Merge pull request #477 from myoung34/renovate/actions-checkout-4.x
Update actions/checkout action to v4.3.0
2025-08-11 08:40:06 -05:00
renovate[bot]andGitHub 01e2356778 Update actions/checkout action to v4.3.0 2025-08-11 13:22:41 +00:00
myoung34andGitHub 94dc8d1fc4 Merge pull request #476 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.8
2025-08-08 09:51:50 -05:00
renovate[bot]andGitHub eb4cdae200 Update github/codeql-action action to v3.29.8 2025-08-08 13:03:38 +00:00
myoung34andGitHub 5d7272cb81 Merge pull request #475 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.7
2025-08-07 16:22:34 -05:00
renovate[bot]andGitHub 807966fd8a Update github/codeql-action action to v3.29.7 2025-08-07 21:22:02 +00:00
myoung34andGitHub 35bcf6356f Merge pull request #474 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.6
2025-08-07 11:45:55 -05:00
renovate[bot]andGitHub 55792e9e0d Update github/codeql-action action to v3.29.6 2025-08-07 16:38:08 +00:00
myoung34andGitHub 39d1fb9176 Merge pull request #473 from myoung34/renovate/docker-login-action-3.x
Update docker/login-action action to v3.5.0
2025-08-04 10:38:10 -05:00
renovate[bot]andGitHub 64f5a4f958 Update docker/login-action action to v3.5.0 2025-08-04 14:58:28 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
ae3e836a6b Update dependency shellcheck to v0.11.0 (#472)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-08-04 06:07:00 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
cd0ae04c45 Update github/codeql-action action to v3.29.5 (#470)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-07-30 05:47:24 +00:00
Marcus Young 81e09ddc65 [Automated 🤖 ] Bump to version 2.327.1 2025-07-25 11:20:08 -05:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
fcb09013a4 Update github/codeql-action action to v3.29.4 (#468)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-07-23 21:14:56 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
b879b98f0d Update github/codeql-action action to v3.29.3 (#467)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-07-22 23:44:43 +00:00
Marcus Young e4df714376 [Automated 🤖 ] Bump to version 2.327.0 2025-07-22 13:50:50 -05:00
myoung34andGitHub 176b4f862d Merge pull request #465 from ElsevierAlex/allow-runner-name-without-prefix
Allow hostname without github-runner prefix to avoid 64-char limit
2025-07-14 08:01:53 -05:00
chorbea bf1835f3ee Defaulted RUNNER_NAME_PREFIX 2025-07-14 09:23:52 +01:00
Marcus Young 1113f5896b [Automated 🤖 ] Bump to version 2.326.0 2025-07-07 15:19:13 -05:00
chorbea a4c88c50ff allow hostname without github-runner prefix to avoid 64-char limit 2025-07-04 10:11:55 +01:00
myoung34andGitHub 6510abfa97 Merge pull request #464 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.2
2025-07-02 20:25:12 -04:00
renovate[bot]andGitHub 1e5aef7fd9 Update github/codeql-action action to v3.29.2 2025-06-30 16:25:17 +00:00
myoung34andGitHub 767b90dc11 Merge pull request #463 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.1
2025-06-27 06:55:11 -05:00
renovate[bot]andGitHub c4cde09fb4 Update github/codeql-action action to v3.29.1 2025-06-27 11:46:24 +00:00
myoung34andGitHub 93215e94d9 Merge pull request #461 from myoung34/renovate/docker-setup-buildx-action-3.x
Update docker/setup-buildx-action action to v3.11.1
2025-06-18 10:56:12 -05:00
renovate[bot]andGitHub cb4c4ac8ed Update docker/setup-buildx-action action to v3.11.1 2025-06-18 13:43:01 +00:00
myoung34andGitHub ba68ffeb81 Merge pull request #460 from myoung34/renovate/docker-setup-buildx-action-3.x
Update docker/setup-buildx-action action to v3.11.0
2025-06-16 14:12:03 -05:00
renovate[bot]andGitHub 6311c21d14 Update docker/setup-buildx-action action to v3.11.0 2025-06-16 19:07:01 +00:00
myoung34andGitHub b3c7474675 Merge pull request #458 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.29.0
2025-06-11 17:17:04 -05:00
renovate[bot]andGitHub b67116f6e4 Update github/codeql-action action to v3.29.0 2025-06-11 22:03:48 +00:00
myoung34andGitHub 1d9e8868ad Merge pull request #457 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.28.19
2025-06-03 10:20:18 -05:00
renovate[bot]andGitHub 2d4990e197 Update github/codeql-action action to v3.28.19 2025-06-03 15:10:37 +00:00
Marcus Young 7e5779b170 [Automated 🤖 ] Bump to version 2.325.0 2025-06-02 13:48:39 -05:00
myoung34andGitHub 56233b5a1c Merge pull request #455 from SaschaHenning/master
Fix RUNNER_WORKDIR not created if part of the folder structure is nonexisting
2025-05-22 09:54:58 -05:00
Sascha HenningandGitHub 2b0f61916a fix RUNNER_WORKDIR not created if parent folder does not exist 2025-05-20 15:01:32 +02:00
myoung34andGitHub d49ef96679 Merge pull request #454 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.28.18
2025-05-19 11:22:45 -05:00
renovate[bot]andGitHub f66226db9c Update github/codeql-action action to v3.28.18 2025-05-16 14:56:08 +00:00
Marcus Young de943e2e38 [Automated 🤖 ] Bump to version 2.324.0 2025-05-13 00:27:05 -05:00
myoung34andGitHub d9094bd6dd Merge pull request #448 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.28.17
2025-05-02 06:21:22 -04:00
renovate[bot]andGitHub 46bb16d631 Update github/codeql-action action to v3.28.17 2025-05-02 09:58:26 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
b304a0e3f1 Update actions/setup-python action to v5.6.0 (#447)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-04-24 14:31:26 +00:00
myoung34andGitHub 67197609ff Merge pull request #446 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.28.16
2025-04-23 08:07:01 -05:00
renovate[bot]andGitHub 4aa08f7b87 Update github/codeql-action action to v3.28.16 2025-04-23 12:48:24 +00:00
myoung34andGitHub c07669d21e Merge pull request #444 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.28.15
2025-04-07 20:42:58 -05:00
renovate[bot]andGitHub afe24fb382 Update github/codeql-action action to v3.28.15 2025-04-07 22:49:35 +00:00
myoung34andGitHub 4593a2c53b Merge pull request #443 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.28.14
2025-04-07 09:06:09 -05:00
renovate[bot]andGitHub febe59b6f2 Update github/codeql-action action to v3.28.14 2025-04-07 10:01:29 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
abf6f7ef87 Update actions/setup-python action to v5.5.0 (#441)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-03-25 10:46:47 +00:00
renovate[bot]GitHubrenovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
8969c0a49b Update github/codeql-action action to v3.28.13 (#439)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-03-24 22:14:27 +00:00
myoung34andGitHub ac1308d764 Merge pull request #438 from myoung34/renovate/github-codeql-action-3.x
Update github/codeql-action action to v3.28.12
2025-03-20 15:45:29 -05:00
renovate[bot]andGitHub c90771d489 Update github/codeql-action action to v3.28.12 2025-03-19 18:39:17 +00:00
Mark Young 5869f38e4b [Automated 🤖 ] Bump to version 2.323.0 2025-03-19 13:38:45 -05:00
Mark Young 9e608c3a82 Move final actions to SHA's 2025-03-17 11:11:33 -05:00
Mark Young b65e08bc91 Add codeql to flag unpinned actions refs 2025-03-17 09:15:06 -05:00
myoung34andGitHub 9270f9a7a7 Merge pull request #437 from myoung34/renovate/docker-setup-qemu-action-3.x
Update docker/setup-qemu-action action to v3.6.0
2025-03-17 08:56:15 -05:00
myoung34andGitHub 4e8ac02be6 Merge pull request #436 from myoung34/renovate/docker-setup-buildx-action-3.x
Update docker/setup-buildx-action action to v3.10.0
2025-03-17 08:56:08 -05:00
myoung34andGitHub 6c30d2e070 Merge pull request #435 from myoung34/renovate/docker-login-action-3.x
Update docker/login-action action to v3.4.0
2025-03-17 08:56:00 -05:00
renovate[bot]andGitHub 5aadc7f42b Update docker/setup-qemu-action action to v3.6.0 2025-03-17 13:55:49 +00:00
myoung34andGitHub 66eb4f5a2f Merge pull request #434 from myoung34/renovate/actions-stale-9.x
Update actions/stale action to v9.1.0
2025-03-17 08:55:47 -05:00
renovate[bot]andGitHub e42df8f308 Update docker/setup-buildx-action action to v3.10.0 2025-03-17 13:55:43 +00:00
myoung34andGitHub feedfa66f0 Merge pull request #433 from myoung34/renovate/actions-setup-python-5.x
Update actions/setup-python action to v5.4.0
2025-03-17 08:55:41 -05:00
renovate[bot]andGitHub 1f125c1391 Update docker/login-action action to v3.4.0 2025-03-17 13:55:38 +00:00
renovate[bot]andGitHub 9d6d26c2d4 Update actions/stale action to v9.1.0 2025-03-17 13:55:33 +00:00
renovate[bot]andGitHub 5cfbf3423a Update actions/setup-python action to v5.4.0 2025-03-17 13:55:30 +00:00
myoung34andGitHub ad78bd8fd8 Merge pull request #432 from myoung34/renovate/actions-create-release-1.x
Update actions/create-release action to v1.1.4
2025-03-17 08:55:25 -05:00
myoung34andGitHub 90fdc6b19c Merge pull request #431 from myoung34/renovate/actions-checkout-4.x
Update actions/checkout action to v4.2.2
2025-03-17 08:55:13 -05:00
myoung34andGitHub 8a526ec997 Merge pull request #430 from myoung34/renovate/nick-fields-retry-3.x
Update nick-fields/retry action to v3.0.2
2025-03-17 08:55:03 -05:00
renovate[bot]andGitHub 9c9369a0e3 Update actions/create-release action to v1.1.4 2025-03-17 13:53:52 +00:00
renovate[bot]andGitHub a79e0182bf Update actions/checkout action to v4.2.2 2025-03-17 13:53:49 +00:00
renovate[bot]andGitHub 2b58586d88 Update nick-fields/retry action to v3.0.2 2025-03-17 13:53:45 +00:00
myoung34andGitHub c1292d5720 Merge pull request #429 from myoung34/renovate/pin-dependencies
Pin dependencies
2025-03-17 08:53:12 -05:00
renovate[bot]andGitHub e8e9da59f0 Pin dependencies 2025-03-17 13:27:33 +00:00
Mark Young d8df91da6d Set renovate to prefer github actions sha's 2025-03-17 08:26:55 -05:00
myoung34andGitHub 651dbe1fdf Merge pull request #427 from myoung34/fix_deregistration_on_reusable
Force DISABLE_AUTOMATIC_DEREGISTRATION to be true on reusable runners, add tests
2025-02-24 11:56:18 -06:00
Mark Young 9ed37bca4c Force DISABLE_AUTOMATIC_DEREGISTRATION to be true on reusable runners, add tests 2025-02-24 11:19:25 -06:00
Mark Young b9c038dfd3 Fix remaining qemu libc-bin runs 2025-02-19 17:30:16 -06:00
myoung34andGitHub 38e96633b7 Merge pull request #425 from myoung34/libc-bin_segfault
Attempt to fix GHA segfault
2025-02-19 17:03:43 -06:00
Mark Young fb13e93b86 Fix GHA segfault on ubuntu-jammy for libc-bin
* backtrack binfmt to v7 via https://github.com/tonistiigi/binfmt/issues/240
2025-02-19 09:50:25 -06:00
Marcus Young c3436f8af3 [Automated 🤖 ] Bump to version 2.322.0 2025-01-24 09:00:57 -06:00
myoung34andGitHub 1a5ad74d28 Merge pull request #417 from myoung34/fix_debian_sid
Fix debian sid
2024-12-11 16:44:11 -05:00
Mark Young 50340d28c3 Fix debian sid 2024-12-11 15:59:31 -05:00
24 changed files with 356 additions and 124 deletions
+3
View File
@@ -0,0 +1,3 @@
query-filters:
- include:
id: actions/unpinned-tag
+9
View File
@@ -0,0 +1,9 @@
<svg xmlns="http://www.w3.org/2000/svg" width="1280" height="640" viewBox="0 0 1280 640" role="img" aria-label="docker-github-actions-runner">
<rect width="1280" height="640" fill="#0A0A0A"/>
<svg x="96" y="215" width="210" height="210" viewBox="0 0 67 67"><path d="M22.21 67V44.6369H0V67H22.21Z" fill="#fff"/><path d="M66.7038 22.3184H22.2534L0.0878906 44.6367H44.4634L66.7038 22.3184Z" fill="#fff"/><path d="M22.21 0H0V22.3184H22.21V0Z" fill="#fff"/><path d="M66.7198 0H44.5098V22.3184H66.7198V0Z" fill="#fff"/><path d="M66.7198 67V44.6369H44.5098V67H66.7198Z" fill="#fff"/></svg>
<text x="378" y="276" font-family="Inter,system-ui,-apple-system,sans-serif" font-size="78" font-weight="800" letter-spacing="-2" fill="#ffffff">docker-github-actions-runner</text>
<text x="378" y="322" font-family="Inter,system-ui,sans-serif" font-size="30" fill="#ffffff" opacity=".66">This will run the new self-hosted github actions runners with…</text>
<rect x="378" y="338" width="806" height="3" rx="1.5" fill="#ffffff" opacity=".9"/>
<text x="378" y="390" font-family="Inter,system-ui,sans-serif" font-size="24" font-weight="600" fill="#ffffff" opacity=".5">github.com/hanzoai</text>
<text x="1184" y="390" text-anchor="end" font-family="Inter,system-ui,sans-serif" font-size="24" font-weight="600" fill="#ffffff" opacity=".5">hanzo.ai</text>
</svg>

After

Width:  |  Height:  |  Size: 1.3 KiB

+47 -30
View File
@@ -10,6 +10,7 @@ on:
- develop
schedule:
- cron: '0 22 * * *'
workflow_dispatch:
jobs:
ubuntu_base_tests:
@@ -21,13 +22,15 @@ jobs:
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile.base Dockerfile.base.ubuntu-${{ matrix.release }}; sed -i.bak 's/FROM.*/FROM ubuntu:${{ matrix.release }}/' Dockerfile.base.ubuntu-${{ matrix.release }}
- name: Install Goss and dgoss
@@ -41,18 +44,18 @@ jobs:
id: testvars
run: echo "GH_RUNNER_IMAGE=ubuntu-${{ matrix.release }}-${{ env.GIT_SHA }}-${{ matrix.platform }}" >> $GITHUB_ENV
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Retry build and load
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
command: |
docker buildx build \
--file Dockerfile \
--file Dockerfile.base.ubuntu-${{ matrix.release }} \
--platform linux/${{ matrix.platform }} \
--tag ${{ env.GH_RUNNER_IMAGE }} \
--load \
@@ -61,7 +64,7 @@ jobs:
--cache-to type=gha,mode=max \
.
- name: Run goss tests
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -70,23 +73,28 @@ jobs:
echo "oscodename: ${{ matrix.release }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "arch: ${{ matrix.platform }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_base.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
debian_base_tests:
runs-on: ubuntu-latest
strategy:
matrix:
release: [bookworm, sid]
release: [bookworm, trixie]
platform: [amd64, arm64]
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile.base Dockerfile.base.debian-${{ matrix.release }}; sed -i.bak 's/FROM.*/FROM debian:${{ matrix.release }}/' Dockerfile.base.debian-${{ matrix.release }}
- name: Install Goss and dgoss
@@ -100,12 +108,12 @@ jobs:
id: testvars
run: echo "GH_RUNNER_IMAGE=debian-${{ matrix.release }}-${{ env.GIT_SHA }}-${{ matrix.platform }}" >> $GITHUB_ENV
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Retry build
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -120,7 +128,7 @@ jobs:
--cache-to type=gha,mode=max \
.
- name: Run goss tests
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -129,6 +137,9 @@ jobs:
echo "oscodename: ${{ matrix.release }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "arch: ${{ matrix.platform }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_base.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
ubuntu_base_latest_deploy:
@@ -136,20 +147,22 @@ jobs:
needs: ubuntu_base_tests
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -172,22 +185,24 @@ jobs:
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile.base Dockerfile.base.ubuntu-${{ matrix.release }}; sed -i.bak 's/FROM.*/FROM ubuntu:${{ matrix.release }}/' Dockerfile.base.ubuntu-${{ matrix.release }}
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -206,26 +221,28 @@ jobs:
needs: debian_base_tests
strategy:
matrix:
release: [bookworm, sid]
release: [bookworm, trixie]
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile.base Dockerfile.base.debian-${{ matrix.release }}; sed -i.bak 's/FROM.*/FROM debian:${{ matrix.release }}/' Dockerfile.base.debian-${{ matrix.release }}
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
+30
View File
@@ -0,0 +1,30 @@
name: CodeQL Security Analysis
on:
push:
branches: [master]
jobs:
analyze:
name: Analyze GitHub Actions YAML
runs-on: ubuntu-latest
permissions:
security-events: write
actions: read
contents: read
steps:
- name: Checkout repository
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Initialize CodeQL
uses: github/codeql-action/init@89a39a4e59826350b863aa6b6252a07ad50cf83e # v4.32.4
with:
languages: "actions"
queries: security-extended
config-file: .github/codeql/codeql-config.yml
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@89a39a4e59826350b863aa6b6252a07ad50cf83e # v4.32.4
with:
category: "/language:actions"
+82 -32
View File
@@ -9,6 +9,7 @@ on:
- develop
schedule:
- cron: '59 23 * * *'
workflow_dispatch:
permissions:
contents: read
@@ -24,13 +25,15 @@ jobs:
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile Dockerfile.ubuntu-${{ matrix.release }}; sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:ubuntu-${{ matrix.release }}/" Dockerfile.ubuntu-${{ matrix.release }}
- name: Install Goss and dgoss
@@ -44,12 +47,12 @@ jobs:
id: testvars
run: echo "GH_RUNNER_IMAGE=ubuntu-${{ matrix.release }}-${{ env.GIT_SHA }}-${{ matrix.platform }}" >> $GITHUB_ENV
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Retry build and load
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -65,7 +68,7 @@ jobs:
.
# Tests will run against the final `${GH_RUNNER_IMAGE}` laid on top of `base-${GH_RUNNER_IMAGE}`
- name: Run goss tests
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -73,10 +76,31 @@ jobs:
echo "os: ubuntu" >goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "oscodename: ${{ matrix.release }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "arch: ${{ matrix.platform }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
# test the edge case from deregistration on reusable runners
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_reusage_fail.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep \
-e DEBUG_ONLY=true \
-e ACCESS_TOKEN=notreal \
-e LABELS=linux,x64 \
-e REPO_URL=https://github.com/octokode/test1 \
-e RUNNER_NAME=sustainjane-runner-1 \
-e RUNNER_SCOPE=repo \
-e RUNNER_WORKDIR=/tmp/runner/work \
-e DISABLE_AUTOMATIC_DEREGISTRATION=false \
-e CONFIGURED_ACTIONS_RUNNER_FILES_DIR=/runner/data \
${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the base
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_base.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the final image but with all defaults
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_full_defaults.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the final image but with non-default values
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_full.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep \
-e DEBUG_ONLY=true \
@@ -100,23 +124,28 @@ jobs:
-e EPHEMERAL=true \
-e DISABLE_AUTO_UPDATE=true \
${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
debian_tests:
runs-on: ubuntu-latest
strategy:
matrix:
release: [bookworm, sid]
release: [bookworm, trixie]
platform: [amd64, arm64]
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile Dockerfile.debian-${{ matrix.release }}; sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:debian-${{ matrix.release }}/" Dockerfile.debian-${{ matrix.release }}
- name: Install Goss and dgoss
@@ -130,12 +159,12 @@ jobs:
id: testvars
run: echo "GH_RUNNER_IMAGE=debian-${{ matrix.release }}-${{ env.GIT_SHA }}-${{ matrix.platform }}" >> $GITHUB_ENV
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Retry build and load
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -151,7 +180,7 @@ jobs:
.
# Tests will run against the final `${GH_RUNNER_IMAGE}` laid on top of `base-${GH_RUNNER_IMAGE}`
- name: Run goss tests
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -159,6 +188,21 @@ jobs:
echo "os: debian" >goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "oscodename: ${{ matrix.release }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "arch: ${{ matrix.platform }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
# test the edge case from deregistration on reusable runners
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_reusage_fail.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep \
-e DEBUG_ONLY=true \
-e ACCESS_TOKEN=notreal \
-e LABELS=linux,x64 \
-e REPO_URL=https://github.com/octokode/test1 \
-e RUNNER_NAME=sustainjane-runner-1 \
-e RUNNER_SCOPE=repo \
-e RUNNER_WORKDIR=/tmp/runner/work \
-e DISABLE_AUTOMATIC_DEREGISTRATION=false \
-e CONFIGURED_ACTIONS_RUNNER_FILES_DIR=/runner/data \
${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the base
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_base.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
# test the final image but with all defaults
@@ -192,28 +236,30 @@ jobs:
needs: ubuntu_tests
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Update Dockerfile FROM org
run: sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:latest/" Dockerfile
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Login to GitHub Container Registry
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -238,28 +284,30 @@ jobs:
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile Dockerfile.ubuntu-${{ matrix.release }}; sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:ubuntu-${{ matrix.release }}/" Dockerfile.ubuntu-${{ matrix.release }}
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Login to GitHub Container Registry
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -280,32 +328,34 @@ jobs:
needs: debian_tests
strategy:
matrix:
release: [bookworm, sid]
release: [bookworm, trixie]
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile Dockerfile.debian-${{ matrix.release }}; sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:debian-${{ matrix.release }}/" Dockerfile.debian-${{ matrix.release }}
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Login to GitHub Container Registry
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
+27 -21
View File
@@ -14,10 +14,10 @@ jobs:
runs-on: ubuntu-latest
steps:
- name: Checkout code
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Create Release
id: create_release
uses: actions/create-release@v1
uses: actions/create-release@0cb9c9b65d5d1901c1f53e5e66eaf4afd303e70e # v1.1.4
env:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
with:
@@ -31,30 +31,32 @@ jobs:
needs: create-release
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: get version
run: echo 'TAG='${GITHUB_REF#refs/tags/} >> $GITHUB_ENV
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Update Dockerfile FROM org
run: sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:latest/" Dockerfile
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Login to GitHub Container Registry
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -79,30 +81,32 @@ jobs:
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: get version
run: echo 'TAG='${GITHUB_REF#refs/tags/} >> $GITHUB_ENV
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile Dockerfile.ubuntu-${{ matrix.release }}; sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:ubuntu-${{ matrix.release }}/" Dockerfile.ubuntu-${{ matrix.release }}
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Login to GitHub Container Registry
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -121,35 +125,37 @@ jobs:
runs-on: ubuntu-latest
strategy:
matrix:
release: [bookworm, sid]
release: [bookworm, trixie]
fail-fast: false
needs: create-release
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: get version
run: echo 'TAG='${GITHUB_REF#refs/tags/} >> $GITHUB_ENV
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Copy Dockerfile
run: cp Dockerfile Dockerfile.debian-${{ matrix.release }}; sed -i.bak "s/FROM.*/FROM ${ORG}\/github-runner-base:debian-${{ matrix.release }}/" Dockerfile.debian-${{ matrix.release }}
- name: Login to DockerHub
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
username: ${{ secrets.DOCKER_USER }}
password: ${{ secrets.DOCKER_TOKEN }}
- name: Login to GitHub Container Registry
uses: docker/login-action@v3
uses: docker/login-action@c94ce9fb468520275223c153574b00df6fe4bcc9 # v3.7.0
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Retry build and push
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
+2 -1
View File
@@ -2,6 +2,7 @@ name: 'Close stale issues and PR'
on:
schedule:
- cron: '30 1 * * *'
workflow_dispatch:
permissions:
issues: write
@@ -11,7 +12,7 @@ jobs:
stale:
runs-on: ubuntu-latest
steps:
- uses: actions/stale@v9
- uses: actions/stale@b5d41d4e1d5dceea10e7104786b73624c18a190f # v10.2.0
with:
stale-issue-message: 'This issue is stale because it has been open 30 days with no activity. Remove stale label or comment or this will be closed in 5 days.'
stale-pr-message: 'This PR is stale because it has been open 45 days with no activity. Remove stale label or comment or this will be closed in 10 days.'
+58 -16
View File
@@ -8,11 +8,11 @@ jobs:
name: Lint
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4
- uses: actions/setup-python@v5
- uses: pre-commit/action@v3.0.1
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- uses: actions/setup-python@a309ff8b426b58ec0e2a45f0f869d46889d02405 # v6.2.0
- uses: pre-commit/action@2c7b3805fd2a0fd8c1884dcaebf91fc102a13ecd # v3.0.1
- name: Run ShellCheck
uses: ludeeus/action-shellcheck@master
uses: ludeeus/action-shellcheck@00b27aa7cb85167568cb48a3838b75f4265f2bca # master
ubuntu_tests:
runs-on: ubuntu-latest
@@ -23,13 +23,15 @@ jobs:
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Install Goss and dgoss
run: |
curl -fsSL https://goss.rocks/install | sh
@@ -52,7 +54,7 @@ jobs:
# Sanity check
grep FROM Dockerfile.final.ubuntu-${{ matrix.release }}
- name: Retry build final image
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -67,7 +69,7 @@ jobs:
.
# Tests will run against the final `${GH_RUNNER_IMAGE}` laid on top of `base-${GH_RUNNER_IMAGE}`
- name: Run goss tests
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -75,10 +77,31 @@ jobs:
echo "os: ubuntu" >goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "oscodename: ${{ matrix.release }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "arch: ${{ matrix.platform }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
# test the edge case from deregistration on reusable runners
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_reusage_fail.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep \
-e DEBUG_ONLY=true \
-e ACCESS_TOKEN=notreal \
-e LABELS=linux,x64 \
-e REPO_URL=https://github.com/octokode/test1 \
-e RUNNER_NAME=sustainjane-runner-1 \
-e RUNNER_SCOPE=repo \
-e RUNNER_WORKDIR=/tmp/runner/work \
-e DISABLE_AUTOMATIC_DEREGISTRATION=false \
-e CONFIGURED_ACTIONS_RUNNER_FILES_DIR=/runner/data \
${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the base
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_base.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the final image but with all defaults
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_full_defaults.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the final image but with non-default values
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_full.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep \
-e DEBUG_ONLY=true \
@@ -102,23 +125,27 @@ jobs:
-e EPHEMERAL=true \
-e DISABLE_AUTO_UPDATE=true \
${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
debian_tests:
runs-on: ubuntu-latest
strategy:
matrix:
release: [bookworm, sid]
release: [bookworm, trixie]
platform: [amd64, arm64]
fail-fast: false
steps:
- name: Copy Repo Files
uses: actions/checkout@master
uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Get GitHub organization or user
run: echo 'ORG='$(echo $(dirname ${GITHUB_REPOSITORY}) | awk '{print tolower($0)}') >> $GITHUB_ENV
- name: Set up QEMU
uses: docker/setup-qemu-action@v3
uses: docker/setup-qemu-action@c7c53464625b32c7a7e944ae62b3e17d2b600130 # v3.7.0
with:
image: tonistiigi/binfmt:qemu-v7.0.0
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
uses: docker/setup-buildx-action@8d2750c68a42422c14e847fe6c8ac0403b4cbd6f # v3.12.0
- name: Install Goss and dgoss
run: |
curl -fsSL https://goss.rocks/install | sh
@@ -141,7 +168,7 @@ jobs:
# Sanity check
grep FROM Dockerfile.final.debian-${{ matrix.release }}
- name: Retry build final image
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -156,7 +183,7 @@ jobs:
.
# Tests will run against the final `${GH_RUNNER_IMAGE}` laid on top of `base-${GH_RUNNER_IMAGE}`
- name: Run goss tests
uses: nick-fields/retry@v3
uses: nick-fields/retry@ce71cc2ab81d554ebbe88c79ab5975992d79ba08 # v3.0.2
with:
timeout_minutes: 60
max_attempts: 3
@@ -164,6 +191,21 @@ jobs:
echo "os: debian" >goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "oscodename: ${{ matrix.release }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
echo "arch: ${{ matrix.platform }}" >>goss_vars_${GH_RUNNER_IMAGE}.yaml
# test the edge case from deregistration on reusable runners
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_reusage_fail.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep \
-e DEBUG_ONLY=true \
-e ACCESS_TOKEN=notreal \
-e LABELS=linux,x64 \
-e REPO_URL=https://github.com/octokode/test1 \
-e RUNNER_NAME=sustainjane-runner-1 \
-e RUNNER_SCOPE=repo \
-e RUNNER_WORKDIR=/tmp/runner/work \
-e DISABLE_AUTOMATIC_DEREGISTRATION=false \
-e CONFIGURED_ACTIONS_RUNNER_FILES_DIR=/runner/data \
${GH_RUNNER_IMAGE} 10
if [ $? -ne 0 ]; then
exit 1
fi
# test the base
GOSS_VARS=goss_vars_${GH_RUNNER_IMAGE}.yaml GOSS_FILE=goss_base.yaml GOSS_SLEEP=1 dgoss run --entrypoint /usr/bin/sleep -e RUNNER_NAME=test -e DEBUG_ONLY=true ${GH_RUNNER_IMAGE} 10
# test the final image but with all defaults
+1 -1
View File
@@ -1 +1 @@
shellcheck 0.10.0
shellcheck 0.11.0
Symlink
+1
View File
@@ -0,0 +1 @@
LLM.md
+1 -1
View File
@@ -5,7 +5,7 @@ LABEL maintainer="myoung34@my.apsu.edu"
ENV AGENT_TOOLSDIRECTORY=/opt/hostedtoolcache
RUN mkdir -p /opt/hostedtoolcache
ARG GH_RUNNER_VERSION="2.321.0"
ARG GH_RUNNER_VERSION="2.331.0"
ARG TARGETPLATFORM
-4
View File
@@ -1,10 +1,6 @@
FROM ubuntu:focal
LABEL maintainer="myoung34@my.apsu.edu"
ARG DUMB_INIT_VERSION="1.2.2"
# TODO: remove git PPA and skopeo customizations for focal when focal hits EOL
ENV GIT_LFS_VERSION="3.2.0"
ENV LANG=en_US.UTF-8
ENV LANGUAGE=en_US.UTF-8
ENV LC_ALL=en_US.UTF-8
+19
View File
@@ -0,0 +1,19 @@
# docker-github-actions-runner
**Org:** hanzoai · **Ecosystem:** hanzo · **Path:** `/Users/a/work/hanzo/hanzoai/docker-github-actions-runner`
**Origin:** https://github.com/hanzoai/docker-github-actions-runner.git
## Discovery
This file (`CLAUDE.md`) is the canonical agent-facing readme; `LLM.md` is a symlink to it. Update either name and both stay in sync.
## Where to look first
- `README.md` — human-facing overview (if present)
- `package.json` / `Cargo.toml` / `pyproject.toml` / `go.mod` — language & deps
- `.github/workflows/` — CI surface
- `docs/` — extended docs (if present)
## Sibling repos
See the org-level `LLM.md` at `/Users/a/work/hanzo/hanzoai/LLM.md` for the full inventory of sibling repos and inter-repo dependencies.
+6 -3
View File
@@ -1,3 +1,5 @@
<p align="center"><img src=".github/hero.svg" alt="docker-github-actions-runner" width="880"></p>
Docker Github Actions Runner
============================
@@ -43,9 +45,10 @@ Currently runners [do not support containerd](https://github.com/actions/runner/
| ubuntu focal | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+/` `/\d\.\d{3}\.\d+-ubuntu-focal/`| [latest](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=latest) [ubuntu-focal](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=ubuntu-focal) | This is the latest build (Rebuilt nightly and on master merges). Tags without an OS name are included. Tags with `-ubuntu-focal` are included and created on [upstream tags](https://github.com/actions/runner/tags).|
| ubuntu noble | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-ubuntu-noble/` | [ubuntu-noble](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=ubuntu-noble) | This is the latest build from noble (Rebuilt nightly and on master merges). Tags with `-ubuntu-noble` are included and created on [upstream tags](https://github.com/actions/runner/tags). | |
| ubuntu jammy | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-ubuntu-jammy/` | [ubuntu-jammy](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=ubuntu-jammy) | This is the latest build from jammy (Rebuilt nightly and on master merges). Tags with `-ubuntu-jammy` are included and created on [upstream tags](https://github.com/actions/runner/tags). | There is [currently an issue with jammy from inside a 20.04LTS host](https://github.com/myoung34/docker-github-actions-runner/issues/219) which is why this is not `latest` |
| debian buster (now deprecated) | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-debian-buster/` | [debian-buster](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=debian-buster) | Debian buster is now deprecated. The packages for arm v7 are in flux and are wildly causing build failures (git as well as apt-key and liblttng-ust#. Tags with `-debian-buster` are included and created on [upstream tags](https://github.com/actions/runner/tags). | |
| debian buster (now deprecated) | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-debian-buster/` | [debian-buster](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=debian-buster) | Debian buster is now deprecated. The packages for arm v7 are in flux and are wildly causing build failures (git as well as liblttng-ust#. Tags with `-debian-buster` are included and created on [upstream tags](https://github.com/actions/runner/tags). | |
| debian bookworm | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-debian-bookworm/` | [debian-bookworm](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=debian-bookworm) | This is the latest build from bookworm (Rebuilt nightly and on master merges). Tags with `-debian-bookworm` are included and created on [upstream tags](https://github.com/actions/runner/tags). | |
| debian sid | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-debian-sid/` | [debian-sid](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=debian-sid) | This is the latest build from sid (Rebuilt nightly and on master merges). Tags with `-debian-sid` are included and created on [upstream tags](https://github.com/actions/runner/tags). | |
| debian trixie | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-debian-trixie/` | [debian-trixie](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=debian-trixie) | This is the latest build from trixie (Rebuilt nightly and on master merges). Tags with `-debian-trixie` are included and created on [upstream tags](https://github.com/actions/runner/tags). | |
| ~~debian sid~~ | `x86_64`,`arm64` | `/\d\.\d{3}\.\d+-debian-sid/` | [debian-sid](https://hub.docker.com/r/myoung34/github-runner/tags?page=1&name=debian-sid) | This is currently disabled as it is failing until `forky` is included in https://download.docker.com/linux/debian/dists/ ~~This is the latest build from sid (Rebuilt nightly and on master merges). Tags with `-debian-sid` are included and created on [upstream tags](https://github.com/actions/runner/tags).~~ | |
These containers are built via Github actions that [copy the dockerfile](https://github.com/myoung34/docker-github-actions-runner/blob/master/.github/workflows/deploy.yml#L47), changing the `FROM` and building to provide simplicity.
@@ -56,7 +59,7 @@ These containers are built via Github actions that [copy the dockerfile](https:/
| `RUN_AS_ROOT` | Boolean to run as root. If `true`: will run as root. If `True` and the user is overridden it will error. If any other value it will run as the `runner` user and allow an optional override. Default is `true` |
| `RUNNER_NAME` | The name of the runner to use. Supersedes (overrides) `RUNNER_NAME_PREFIX` |
| `RUNNER_NAME_PREFIX` | A prefix for runner name (See `RANDOM_RUNNER_SUFFIX` for how the full name is generated). Note: will be overridden by `RUNNER_NAME` if provided. Defaults to `github-runner` |
| `RANDOM_RUNNER_SUFFIX` | Boolean to use a randomized runner name suffix (preceded by `RUNNER_NAME_PREFIX`). Will use a 13 character random string by default. If set to a value other than true it will attempt to use the contents of `/etc/hostname` or fall back to a random string if the file does not exist or is empty. Note: will be overridden by `RUNNER_NAME` if provided. Defaults to `true`. |
| `RANDOM_RUNNER_SUFFIX` | Boolean to use a randomized runner name suffix (preceded by `RUNNER_NAME_PREFIX`). Will use a 13 character random string by default. If set to a value other than true and `RUNNER_NAME_PREFIX` is set to an empty string, it will attempt to use the contents of `/etc/hostname` or fall back to a random string if the file does not exist or is empty. Note: will be overridden by `RUNNER_NAME` if provided. Defaults to `true`. |
| `ACCESS_TOKEN` | A [github PAT](https://docs.github.com/en/github/authenticating-to-github/creating-a-personal-access-token) to use to generate `RUNNER_TOKEN` dynamically at container start. Not using this requires a valid `RUNNER_TOKEN` |
| `APP_ID` | The github application ID. Must be paired with `APP_PRIVATE_KEY` and should not be used with `ACCESS_TOKEN` or `RUNNER_TOKEN` |
| `APP_PRIVATE_KEY` | The github application private key. Must be paired with `APP_ID` and should not be used with `ACCESS_TOKEN` or `RUNNER_TOKEN` |
+4 -2
View File
@@ -1,7 +1,8 @@
{
"user": {
"user-id": 1001,
"group-id": 121
"group-id": 121,
"docker-group-id": 500
},
"install": [
{
@@ -16,13 +17,14 @@
"source": "apt",
"packages": [
"build-essential",
"lsb-release",
"zlib1g-dev",
"zstd",
"gettext",
"libcurl4-openssl-dev",
"libpq-dev",
"pkg-config",
"software-properties-common"
"libyaml-dev"
]
},
{
+4
View File
@@ -13,6 +13,10 @@ function group_id() {
jq -r '.user."group-id"' "$(config_file)"
}
function docker_group_id() {
jq -r '.user."docker-group-id"' "$(config_file)"
}
function apt_packages() {
jq -r '.install[] | select(.source == "apt") | .packages[]' "$(config_file)" | paste -sd ' ' -
}
+4 -1
View File
@@ -17,7 +17,8 @@ function install_essentials() {
locales \
gosu \
gpg-agent \
dumb-init
dumb-init \
libc-bin
}
function install_tools_apt() {
@@ -49,6 +50,8 @@ install_essentials
configure_sources
apt-get update
# The docker group needs to run before installers
groupadd -g "$(docker_group_id)" docker || :
install_tools_apt
install_tools
+10 -5
View File
@@ -6,12 +6,17 @@ function configure_git() {
source /etc/os-release
local GIT_CORE_PPA_KEY="A1715D88E1DF1F24"
apt-key adv --keyserver keyserver.ubuntu.com --recv-keys ${GIT_CORE_PPA_KEY} \
|| apt-key adv --keyserver pgp.mit.edu --recv-keys ${GIT_CORE_PPA_KEY} \
|| apt-key adv --keyserver keyserver.pgp.com --recv-keys ${GIT_CORE_PPA_KEY}
gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys ${GIT_CORE_PPA_KEY}
gpg --export ${GIT_CORE_PPA_KEY} | gpg --dearmor -o /usr/share/keyrings/git-core.gpg
if [[ "${VERSION_CODENAME}" == "focal" ]]; then
echo deb http://ppa.launchpad.net/git-core/ppa/ubuntu focal main>/etc/apt/sources.list.d/git-core.list
local GIT_CORE_FOCAL_PPA_KEY="E363C90F8F1B6217"
local KEYRING_FILE="/usr/share/keyrings/git-core-focal.gpg"
gpg --keyserver hkps://keyserver.ubuntu.com --recv-keys ${GIT_CORE_FOCAL_PPA_KEY}
gpg --export ${GIT_CORE_FOCAL_PPA_KEY} | gpg --dearmor -o "${KEYRING_FILE}"
echo deb [signed-by=${KEYRING_FILE}] http://ppa.launchpad.net/git-core/ppa/ubuntu focal main>/etc/apt/sources.list.d/git-core.list
fi
}
@@ -38,7 +43,7 @@ function configure_container_tools() {
echo "deb https://download.opensuse.org/repositories/devel:/kubic:/libcontainers:/stable/xUbuntu_20.04/ /" \
| tee /etc/apt/sources.list.d/devel:kubic:libcontainers:stable.list
curl -L "https://build.opensuse.org/projects/devel:kubic/signing_keys/download?kind=gpg" \
| apt-key add -
| /usr/bin/apt-key add -
fi
}
+3
View File
@@ -28,6 +28,9 @@ function install_aws-cli() {
function install_git-lfs() {
local DPKG_ARCH
DPKG_ARCH="$(dpkg --print-architecture)"
GIT_LFS_VERSION=$(curl -sL -H "Accept: application/vnd.github+json" \
https://api.github.com/repos/git-lfs/git-lfs/releases/latest \
| jq -r '.tag_name' | sed 's/^v//g')
curl -s "https://github.com/git-lfs/git-lfs/releases/download/v${GIT_LFS_VERSION}/git-lfs-linux-${DPKG_ARCH}-v${GIT_LFS_VERSION}.tar.gz" -L -o /tmp/lfs.tar.gz
tar -xzf /tmp/lfs.tar.gz -C /tmp
+21 -3
View File
@@ -22,6 +22,19 @@ trap_with_arg() {
deregister_runner() {
echo "Caught $1 - Deregistering runner"
if [[ -n "${ACCESS_TOKEN}" ]]; then
# If using GitHub App authentication, refresh the access token before deregistration
if [[ -n "${APP_ID}" ]] && [[ -n "${APP_PRIVATE_KEY}" ]] && [[ -n "${APP_LOGIN}" ]]; then
echo "Refreshing access token for deregistration"
nl="
"
NEW_ACCESS_TOKEN=$(APP_ID="${APP_ID}" APP_PRIVATE_KEY="${APP_PRIVATE_KEY//\\n/${nl}}" APP_LOGIN="${APP_LOGIN}" bash /app_token.sh)
if [[ -z "${NEW_ACCESS_TOKEN}" ]] || [[ "${NEW_ACCESS_TOKEN}" == "null" ]]; then
echo "ERROR: Failed to refresh access token for deregistration"
exit 1
fi
ACCESS_TOKEN="${NEW_ACCESS_TOKEN}"
echo "Access token refreshed successfully"
fi
_TOKEN=$(ACCESS_TOKEN="${ACCESS_TOKEN}" bash /token.sh)
RUNNER_TOKEN=$(echo "${_TOKEN}" | jq -r .token)
fi
@@ -42,7 +55,8 @@ if [[ ${RANDOM_RUNNER_SUFFIX} != "true" ]]; then
if [[ -f "/etc/hostname" ]]; then
# in some cases it can also be empty
if [[ $(stat --printf="%s" /etc/hostname) -ne 0 ]]; then
_RUNNER_NAME=${RUNNER_NAME:-${RUNNER_NAME_PREFIX:-github-runner}-$(cat /etc/hostname)}
_RUNNER_NAME_PREFIX=${RUNNER_NAME_PREFIX-"github-runner"}
_RUNNER_NAME=${RUNNER_NAME:-${_RUNNER_NAME_PREFIX:+${_RUNNER_NAME_PREFIX}-}$(cat /etc/hostname)}
echo "RANDOM_RUNNER_SUFFIX is ${RANDOM_RUNNER_SUFFIX}. /etc/hostname exists and has content. Setting runner name to ${_RUNNER_NAME}"
else
echo "RANDOM_RUNNER_SUFFIX is ${RANDOM_RUNNER_SUFFIX} ./etc/hostname exists but is empty. Not using /etc/hostname."
@@ -53,7 +67,7 @@ if [[ ${RANDOM_RUNNER_SUFFIX} != "true" ]]; then
fi
_RUNNER_WORKDIR=${RUNNER_WORKDIR:-/_work/${_RUNNER_NAME}}
_LABELS=${LABELS:-default}
_LABELS=${RUNNER_LABELS:-${LABELS:-default}}
_RUNNER_GROUP=${RUNNER_GROUP:-Default}
_GITHUB_HOST=${GITHUB_HOST:="github.com"}
_RUN_AS_ROOT=${RUN_AS_ROOT:="true"}
@@ -150,7 +164,7 @@ configure_runner() {
--replace \
"${ARGS[@]}"
[[ ! -d "${_RUNNER_WORKDIR}" ]] && mkdir "${_RUNNER_WORKDIR}"
[[ ! -d "${_RUNNER_WORKDIR}" ]] && mkdir -p "${_RUNNER_WORKDIR}"
}
@@ -210,6 +224,10 @@ fi
if [[ -n "${_CONFIGURED_ACTIONS_RUNNER_FILES_DIR}" ]]; then
echo "Reusage is enabled. Storing data to ${_CONFIGURED_ACTIONS_RUNNER_FILES_DIR}"
if [[ ${_DISABLE_AUTOMATIC_DEREGISTRATION} == "false" ]]; then
echo "DISABLE_AUTOMATIC_DEREGISTRATION should be set to true to avoid issues with re-using a deregistered runner."
exit 1
fi
# Quoting (even with double-quotes) the regexp brokes the copying
cp -p -r "/actions-runner/_diag" "/actions-runner/svc.sh" /actions-runner/.[^.]* "${_CONFIGURED_ACTIONS_RUNNER_FILES_DIR}"
fi
+7 -2
View File
@@ -11,8 +11,10 @@ package:
installed: false
jq:
installed: true
lsb_release:
installed: false
libyaml-dev:
installed: true
lsb-release:
installed: true
make:
installed: true
pwsh:
@@ -87,3 +89,6 @@ group:
runner:
exists: true
gid: 121
docker:
exists: true
gid: 500
+9
View File
@@ -0,0 +1,9 @@
command:
/entrypoint.sh something:
exit-status: 1
stdout:
- "Runner reusage is enabled"
- "Reusage is enabled. Storing data to /runner/data"
- "DISABLE_AUTOMATIC_DEREGISTRATION should be set to true to avoid issues with re-using a deregistered runner."
stderr: ""
timeout: 2000
+1 -1
View File
@@ -10,4 +10,4 @@ curl -L "https://github.com/actions/runner/releases/download/v${GH_RUNNER_VERSIO
tar -zxf actions.tar.gz
rm -f actions.tar.gz
./bin/installdependencies.sh
mkdir /_work
mkdir -p /_work
+7 -1
View File
@@ -1,7 +1,8 @@
{
"$schema": "https://docs.renovatebot.com/renovate-schema.json",
"extends": [
"config:base"
"config:base",
"helpers:pinGitHubActionDigests"
],
"packageRules": [
{
@@ -11,6 +12,11 @@
{
"matchDepTypes": ["devDependencies"],
"automerge": true
},
{
"matchManagers": ["github-actions"],
"matchPackagePatterns": [".*"],
"versioning": "digest"
}
],
"platformAutomerge": true