build(deps): bump actions/checkout from 7.0.0 to 7.0.1 #108
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: Verify | |
| on: | |
| pull_request: | |
| push: | |
| branches: | |
| - main | |
| permissions: | |
| contents: read | |
| concurrency: | |
| group: ci-${{ github.workflow }}-${{ github.ref }} | |
| cancel-in-progress: true | |
| jobs: | |
| powershell: | |
| runs-on: windows-latest | |
| steps: | |
| - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 | |
| - name: Parse Windows acceptance harness | |
| shell: powershell | |
| run: | | |
| $tokens = $null | |
| $errors = $null | |
| [void][System.Management.Automation.Language.Parser]::ParseFile( | |
| "$PWD\scripts\windows\Invoke-VaneAcceptance.ps1", | |
| [ref]$tokens, | |
| [ref]$errors | |
| ) | |
| if ($errors.Count -gt 0) { | |
| $errors | Format-List -Force | |
| exit 1 | |
| } | |
| - name: Test Windows acceptance harness | |
| shell: powershell | |
| run: powershell.exe -NoProfile -ExecutionPolicy Bypass -File .\scripts\windows\Test-VaneAcceptanceHarness.ps1 | |
| frontend: | |
| runs-on: ubuntu-latest | |
| steps: | |
| - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 | |
| - uses: actions/setup-node@820762786026740c76f36085b0efc47a31fe5020 # v7.0.0 | |
| with: | |
| node-version: 22.20.0 | |
| cache: npm | |
| - run: npm ci | |
| - run: npm audit --audit-level=high | |
| - run: npm test | |
| - run: npm run build | |
| rust: | |
| strategy: | |
| fail-fast: false | |
| matrix: | |
| os: [windows-latest, ubuntu-latest] | |
| runs-on: ${{ matrix.os }} | |
| steps: | |
| - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 | |
| - name: Install Linux desktop dependencies | |
| if: runner.os == 'Linux' | |
| run: | | |
| sudo apt-get update | |
| sudo apt-get install -y libwebkit2gtk-4.1-dev build-essential curl wget file libssl-dev libgtk-3-dev libayatana-appindicator3-dev librsvg2-dev | |
| - uses: dtolnay/rust-toolchain@4cda84d5c5c54efe2404f9d843567869ab1699d4 | |
| with: | |
| toolchain: 1.93.0 | |
| components: clippy,rustfmt | |
| - uses: Swatinem/rust-cache@e18b497796c12c097a38f9edb9d0641fb99eee32 # v2 | |
| with: | |
| workspaces: src-tauri | |
| - name: Rust formatting | |
| working-directory: src-tauri | |
| run: cargo fmt --check | |
| - name: Rust library tests | |
| working-directory: src-tauri | |
| run: cargo test --lib --locked | |
| - name: Rust all-target tests | |
| working-directory: src-tauri | |
| run: cargo test --workspace --all-targets --locked | |
| - name: Rust all-feature all-target tests | |
| working-directory: src-tauri | |
| run: cargo test --workspace --all-features --all-targets --locked | |
| - name: Clippy | |
| working-directory: src-tauri | |
| run: cargo clippy --workspace --all-targets --all-features --locked -- -D warnings | |
| rustsec: | |
| runs-on: ubuntu-latest | |
| steps: | |
| - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 | |
| - uses: dtolnay/rust-toolchain@4cda84d5c5c54efe2404f9d843567869ab1699d4 | |
| with: | |
| toolchain: 1.93.0 | |
| - name: Rust dependency vulnerability audit | |
| run: | | |
| cargo install cargo-audit --version 0.22.1 --locked | |
| cargo audit --file src-tauri/Cargo.lock |