Skip to content

chore(deps): bump gitleaks/gitleaks-action from 2 to 3 #107

chore(deps): bump gitleaks/gitleaks-action from 2 to 3

chore(deps): bump gitleaks/gitleaks-action from 2 to 3 #107

Workflow file for this run

name: CI
on:
push:
branches: [master, main]
pull_request:
permissions:
contents: read
jobs:
test:
name: test (${{ matrix.os }} · py${{ matrix.python-version }})
runs-on: ${{ matrix.os }}
strategy:
fail-fast: false
matrix:
os: [ubuntu-latest, macos-latest, windows-latest]
python-version: ["3.10", "3.11", "3.12", "3.13"]
steps:
- uses: actions/checkout@v4
- name: Set up Python ${{ matrix.python-version }}
uses: actions/setup-python@v6
with:
python-version: ${{ matrix.python-version }}
cache: pip
- name: Install
run: |
python -m pip install --upgrade pip
pip install -e ".[dev]"
- name: Lint (ruff)
run: ruff check .
- name: Test
run: pytest -q --cov=writingagent --cov-report=xml --cov-report=term-missing
env:
WRITINGAGENT_FAKE: "1" # tests run fully offline; no API key needed
- name: Upload coverage to Codecov
# One upload per run (the ubuntu · 3.12 cell). Non-blocking: a missing token or a
# Codecov outage must never fail the build.
if: matrix.os == 'ubuntu-latest' && matrix.python-version == '3.12'
uses: codecov/codecov-action@v4
with:
files: ./coverage.xml
fail_ci_if_error: false
token: ${{ secrets.CODECOV_TOKEN }}
secret-scan:
name: secret scan (gitleaks)
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
with:
fetch-depth: 0 # scan full history, not just the tip
- uses: gitleaks/gitleaks-action@v3
env:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}