Maintenance: Bump astral-sh/setup-uv from 9.0.0 to 10.0.1 #131
Workflow file for this run
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| # engine-ci — the seed's required validator check (required check #1). | |
| # Materializes the engine tool-runtime, then runs the validator over the CI suite | |
| # (PR-body completeness, coverage, and the protection-detection check — re-homed as | |
| # a custom/script rule in core) plus the checker-of-checkers self-tests. | |
| # The job name `engine-ci` is the FROZEN check context bound in the branch | |
| # ruleset; renaming it is a guardrail-weakening change. | |
| name: engine-ci | |
| on: | |
| pull_request: | |
| # `labeled`/`unlabeled` so applying an acknowledgment label (e.g. `guardrail-ack`, the product-design | |
| # lock-integrity re-acceptance) re-runs the suite and clears its check without needing a fresh push. | |
| types: [opened, synchronize, reopened, edited, labeled, unlabeled] | |
| permissions: | |
| contents: read | |
| jobs: | |
| engine-ci: | |
| name: engine-ci | |
| runs-on: ubuntu-latest | |
| steps: | |
| - name: Check out the pull request | |
| uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 | |
| - name: Set up uv (pinned) | |
| uses: astral-sh/setup-uv@20cfd1bf945f4377ade1205e4dbc17946fc9a30d # v10.0.1 | |
| with: | |
| version: "0.11.8" | |
| - name: Materialize the engine tool-runtime | |
| run: uv sync --directory .engine --frozen | |
| - name: Run the seed validator (CI suite) | |
| # The validator reads the PR body from $GITHUB_EVENT_PATH (.pull_request.body), | |
| # never from an interpolated shell argument. | |
| env: | |
| GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
| GITHUB_REPOSITORY: ${{ github.repository }} | |
| # The repo's AUTHORITATIVE current default branch (on a pull_request the repository payload is | |
| # populated), so the protected-branch check verifies the branch GitHub actually protects — not a | |
| # hard-coded "main" that would check the wrong branch on a repo whose default is e.g. "master". | |
| PROTECTED_BRANCH: ${{ github.event.repository.default_branch }} | |
| run: uv run --directory .engine --frozen -- python tools/validate.py --suite CI | |
| - name: Run the self-tests (the checker-of-checkers) | |
| # -b (buffer): unittest captures each test's stdout/stderr and discards it on | |
| # success, replaying only a FAILING test's output. Keeps a green run's tail (the | |
| # `Ran N tests … OK` summary) from being buried under demo-test walkthrough output. | |
| run: uv run --directory .engine --frozen -- python -m unittest discover -s tools -p 'test_*.py' -b |