Skip to content

Commit 5795981

Browse files
committed
chore(os): implement open source readiness and CI/CD automation
- Updated GitHub Actions workflow for automated Maven build and test on Java 21 - Create SECURITY.md to define vulnerability reporting policy - Implement GitHub Issue templates for bug reports and feature requests - Update README.md with status badges (CI/CD, License, Security) - Standardize documentation and quickstart instructions for public release
1 parent 8fada7d commit 5795981

5 files changed

Lines changed: 42 additions & 46 deletions

File tree

Lines changed: 18 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -1,42 +1,41 @@
11
name: Bug Report
2-
description: File a report to help us improve PCM
3-
title: "[BUG] "
2+
description: Create a report to help us improve PCM
43
labels: ["bug"]
54
body:
65
- type: markdown
76
attributes:
87
value: |
98
Thanks for taking the time to fill out this bug report!
109
- type: textarea
11-
id: what-happened
10+
id: description
1211
attributes:
13-
label: What happened?
14-
description: Also tell us what you expected to happen.
15-
placeholder: Tell us what you see!
12+
label: Describe the bug
13+
description: A clear and concise description of what the bug is.
1614
validations:
1715
required: true
1816
- type: textarea
19-
id: reproduction-steps
17+
id: reproduction
2018
attributes:
21-
label: Steps to reproduce
22-
description: How can we make this happen ourselves?
19+
label: Steps to Reproduce
20+
description: How can we reproduce this issue?
2321
placeholder: |
24-
1. Start platform with scripts/start-platform.sh
22+
1. Start the platform using ...
2523
2. Call endpoint ...
2624
3. See error ...
2725
validations:
2826
required: true
2927
- type: textarea
30-
id: environment
28+
id: expected
3129
attributes:
32-
label: Environment
33-
description: OS, Java version, Docker version, etc.
34-
placeholder: macOS 14.2, Java 21, Docker 24.0.7
35-
validations:
36-
required: true
30+
label: Expected Behavior
31+
description: What did you expect to happen?
32+
- type: input
33+
id: version
34+
attributes:
35+
label: PCM Version
36+
description: e.g. 0.1.0-SNAPSHOT
3737
- type: textarea
3838
id: logs
3939
attributes:
40-
label: Relevant Log Output
41-
description: Please copy and paste any relevant log output or stack traces.
42-
render: shell
40+
label: Relevant Logs
41+
description: Please paste any relevant logs or error messages.
Lines changed: 3 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -1,15 +1,12 @@
11
name: Feature Request
22
description: Suggest an idea for PCM
3-
title: "[FEATURE] "
43
labels: ["enhancement"]
54
body:
65
- type: textarea
7-
id: feature-description
6+
id: problem
87
attributes:
98
label: Is your feature request related to a problem?
10-
description: A clear and concise description of what the problem is. Ex. I'm always frustrated when [...]
11-
validations:
12-
required: true
9+
description: A clear and concise description of what the problem is.
1310
- type: textarea
1411
id: solution
1512
attributes:
@@ -23,7 +20,7 @@ body:
2320
label: Describe alternatives you've considered
2421
description: A clear and concise description of any alternative solutions or features you've considered.
2522
- type: textarea
26-
id: additional-context
23+
id: additional
2724
attributes:
2825
label: Additional context
2926
description: Add any other context or screenshots about the feature request here.

‎.github/workflows/ci.yml‎

Lines changed: 14 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -1,28 +1,31 @@
1-
name: build
1+
name: PCM CI/CD
22

33
on:
44
push:
5-
branches: [ main, develop ]
5+
branches: [ "main", "develop" ]
66
pull_request:
7-
branches: [ main ]
7+
branches: [ "main", "develop" ]
88

99
jobs:
1010
build:
1111
runs-on: ubuntu-latest
12+
13+
services:
14+
# Optional: In the future, we can add PostgreSQL/Kafka for integration tests
15+
# For now, we focus on compilation and unit tests
16+
1217
steps:
1318
- uses: actions/checkout@v4
14-
19+
1520
- name: Set up JDK 21
1621
uses: actions/setup-java@v4
1722
with:
1823
java-version: '21'
1924
distribution: 'temurin'
2025
cache: maven
21-
26+
2227
- name: Build with Maven
23-
run: mvn -B clean install -DskipTests
24-
25-
- name: Run Tests
26-
run: mvn -B test -Dpact.verifier.publishResults=true
27-
env:
28-
TESTCONTAINERS_RYUK_DISABLED: true # Often helpful in CI constrained environments
28+
run: mvn -B clean install -DskipTests # Skip tests initially to ensure compilation across all stacks
29+
30+
- name: Run Unit Tests
31+
run: mvn -B test

‎README.md‎

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -9,6 +9,8 @@
99
[![License](https://img.shields.io/badge/License-Apache_2.0-blue.svg)](LICENSE)
1010
[![Java](https://img.shields.io/badge/Java-21-orange.svg)](https://openjdk.org/projects/jdk/21/)
1111
[![Spring Boot](https://img.shields.io/badge/Spring%20Boot-3.2-green.svg)](https://spring.io/projects/spring-boot)
12+
[![CI/CD](https://github.com/vibe-afrika/pcm/actions/workflows/ci-cd.yml/badge.svg)](https://github.com/vibe-afrika/pcm/actions/workflows/ci-cd.yml)
13+
[![Security Policy](https://img.shields.io/badge/Security-Policy-brightgreen.svg)](SECURITY.md)
1214

1315
---
1416

‎SECURITY.md‎

Lines changed: 5 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -2,22 +2,17 @@
22

33
## Supported Versions
44

5-
We currently provide security updates for the following versions:
5+
The following versions of PCM are currently being supported with security updates:
66

77
| Version | Supported |
88
| ------- | ------------------ |
99
| 0.1.x | :white_check_mark: |
10-
| < 0.1.0 | :x: |
10+
| < 0.1 | :x: |
1111

1212
## Reporting a Vulnerability
1313

14-
We take the security of PCM seriously. If you believe you have found a security vulnerability, please do NOT report it publicly in the issue tracker.
14+
We take the security of PCM seriously. If you believe you have found a security vulnerability, please report it to us by emailing [EMAIL_ADDRESS].
1515

16-
Instead, please send an email to **security@vibe-afrika.dev**.
16+
Please do **not** open a public GitHub issue for security vulnerabilities.
1717

18-
Please include:
19-
- A description of the vulnerability.
20-
- Steps to reproduce the issue.
21-
- Potential impact.
22-
23-
We will acknowledge your report within 48 hours and provide a timeline for a fix. We follow a responsible disclosure policy.
18+
After you report a vulnerability, we will acknowledge your email within 48 hours and provide a timeline for a fix. We follow a responsible disclosure policy and ask that you give us reasonable time to fix the issue before making it public.

0 commit comments

Comments
 (0)