-
Notifications
You must be signed in to change notification settings - Fork 1
145 lines (123 loc) · 4.95 KB
/
pr-checks.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
name: Pull Request Checks
on:
pull_request:
paths:
- src/**
- static/**
- package.json
- pnpm-lock.yaml
- "*.config.*s"
- tsconfig.json
- .github/workflows/*
concurrency:
group: ${{ github.workflow }}-${{ github.event.pull_request.number || github.ref }}
cancel-in-progress: true
jobs:
permissions-check:
name: Permissions check
runs-on: ubuntu-latest
outputs:
has-permissions: ${{ steps.check-output.outputs.has-permissions }}
steps:
- name: ❓ Has access to secrets?
id: secrets-check
continue-on-error: true
uses: actions/checkout@v4
with:
repository: ${{ github.event.repository.full_name }}
ref: ${{ github.head_ref }}
token: ${{ secrets.WORKFLOW_PAT }}
- name: 📤 Set output
id: check-output
if: always()
run: echo "has-permissions=${{ steps.secrets-check.outcome == 'success' && 'true' || 'false' }}" >> $GITHUB_OUTPUT
check-and-fix:
name: Check and fix
runs-on: ubuntu-latest
needs: permissions-check
permissions:
contents: write
steps:
- name: 📂 Checkout
uses: actions/checkout@v4
with:
repository: ${{ github.event.repository.full_name }}
ref: ${{ github.head_ref }}
token: ${{ needs.permissions-check.outputs.has-permissions == 'false' && github.token || secrets.WORKFLOW_PAT }}
fetch-depth: ${{ github.event_name == 'push' && 2 || 1 }}
- name: 📥 Install pnpm
uses: pnpm/action-setup@v2
with:
version: latest
- name: 🧭 Setup Node
uses: actions/setup-node@v4
with:
node-version: latest
cache: pnpm
- name: 📥 Install NPM dependencies
run: pnpm i --no-frozen-lockfile
- name: 🔍 Detect file changes
id: detect-changes-pnpm
run: |
if [[ $(git diff --name-only) =~ pnpm-lock.yaml ]]; then
echo "changes_detected=true >> $GITHUB_OUTPUT"
else
echo "changes_detected=false >> $GITHUB_OUTPUT"
fi
- name: ❌ Exit if lock file is not updated
if: needs.permissions-check.outputs.has-permissions == 'false' && steps.detect-changes-pnpm.outputs.changes_detected == 'true'
run: exit 1
- name: 📤 Commit updated lock file
id: auto-commit-action-lock
if: needs.permissions-check.outputs.has-permissions == 'true'
uses: stefanzweifel/git-auto-commit-action@v5
with:
commit_message: Update lock file
file_pattern: pnpm-lock.yaml
- name: ❌ Exit if lock file has been committed
if: needs.permissions-check.outputs.has-permissions == 'true' && steps.auto-commit-action-lock.outputs.changes_detected == 'true'
run: exit 1
- name: 🔍 Get modified files
id: modified-files
uses: tj-actions/changed-files@v45
- name: 📤 Export results
id: changed-files
run: |
code_changes=false
config_changes=false
deps_changes=false
for file in ${{ steps.modified-files.outputs.all_changed_files }}; do
if [[ $file =~ ^src/ || $file =~ ^static/ ]]; then
echo "$file changes code"
code_changes=true
elif [[ $file = pnpm-lock.yaml ]]; then
echo "$file changes dependencies"
deps_changes=true
elif [[ $file = *.config.*s || $file = tsconfig.json ]]; then
echo "$file changes config"
config_changes=true
fi
if [[ $code_changes == 'true' && $config_changes == 'true' ]]; then
echo "Code and config changes detected, skipping further checks"
break
fi
done
echo "code_changes=$code_changes" >> $GITHUB_OUTPUT
echo "config_changes=$config_changes" >> $GITHUB_OUTPUT
echo "deps_changes=$deps_changes" >> $GITHUB_OUTPUT
- name: ✨ Check Svelte format
id: svelte-format
if: steps.changed-files.outputs.code_changes == 'true'
run: pnpm check:ci
- name: ✨ Check style with Prettier & ESLint
id: prettier-eslint
if: steps.changed-files.outputs.code_changes == 'true' || steps.changed-files.outputs.config_changes == 'true' || steps.changed-files.outputs.deps_changes == 'true'
run: pnpm lint
- name: 🔧 Fix lint
if: failure() && needs.permissions-check.outputs.has-permissions == 'true' && (steps.svelte-format.outcome == 'failure' || steps.prettier-eslint.outcome == 'failure')
run: pnpm format && pnpm eslint --fix .
- name: 📤 Commit lint fixes
if: failure() && needs.permissions-check.outputs.has-permissions == 'true' && (steps.svelte-format.outcome == 'failure' || steps.prettier-eslint.outcome == 'failure')
uses: stefanzweifel/git-auto-commit-action@v5
with:
commit_message: Fix lint