Skip to content

VoucherBot v2.0.1

VoucherBot v2.0.1 #12

Workflow file for this run

name: Release
on:
release:
types: [published]
permissions:
contents: write
packages: write
concurrency:
group: release-${{ github.ref }}
cancel-in-progress: false
env:
REGISTRY: ghcr.io
IMAGE_NAME: ${{ github.repository }}
jobs:
verify:
name: Verify
runs-on: ubuntu-latest
services:
postgres:
image: postgres:16-alpine
env:
POSTGRES_USER: voucherbot
POSTGRES_PASSWORD: voucherbot
POSTGRES_DB: voucherbot
ports:
- 5432:5432
options: >-
--health-cmd "pg_isready -U voucherbot -d voucherbot"
--health-interval 10s
--health-timeout 5s
--health-retries 5
env:
DATABASE_URL: postgresql+asyncpg://voucherbot:voucherbot@localhost:5432/voucherbot
IS_PROD: "false"
REDDIT_INGESTION_ENABLED: "false"
PYTHONUNBUFFERED: "1"
steps:
- name: Check out repository
uses: actions/checkout@v4
- name: Install uv
uses: astral-sh/setup-uv@v3
with:
enable-cache: true
cache-dependency-glob: "pyproject.toml"
- name: Set up Python
uses: actions/setup-python@v5
with:
python-version: "3.11"
- name: Install dependencies
run: uv sync --all-extras --dev
- name: Check formatting
run: uv run ruff format --check .
- name: Run linter
run: uv run ruff check --output-format=github .
- name: Run type checks
run: uv run mypy voucherbot tests
- name: Run tests
run: uv run pytest
docker:
name: Build and push Docker image
runs-on: ubuntu-latest
needs: verify
permissions:
contents: write
packages: write
id-token: write
steps:
- name: Check out repository
uses: actions/checkout@v4
- name: Log in to GitHub Container Registry
uses: docker/login-action@v3
with:
registry: ${{ env.REGISTRY }}
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Extract metadata
id: meta
uses: docker/metadata-action@v5
with:
images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}
tags: |
type=semver,pattern={{version}}
type=semver,pattern={{major}}.{{minor}}
type=semver,pattern={{major}}
type=edge
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
- name: Build and push
id: build
uses: docker/build-push-action@v3
with:
context: .
push: true
tags: ${{ steps.meta.outputs.tags }}
labels: ${{ steps.meta.outputs.labels }}
cache-from: type=gha
cache-to: type=gha,mode=max
- name: Install cosign
uses: sigstore/cosign-installer@6f9f17788090df1f26f669e9d70d6ae9567deba6 # v4.1.2
- name: Lowercase image name (OCI references are case-sensitive)
run: echo "IMAGE_NAME=${IMAGE_NAME,,}" >> "$GITHUB_ENV"
env:
IMAGE_NAME: ${{ env.IMAGE_NAME }}
- name: Sign the published Docker image
env:
IMAGE: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}@${{ steps.build.outputs.digest }}
run: cosign sign --yes "$IMAGE"