mirror of
https://github.com/hcengineering/platform.git
synced 2026-08-17 18:05:42 +02:00
The check_model_version.js CI step was commented out, which allowed v0.7.413 to ship with MODEL_VERSION=0.7.343 baked into the desktop client. This causes a blocking "New version is available" dialog for self-hosted users whose servers have MODEL_VERSION > 0.7.343. Re-enabling this check will catch future model/version.txt drift before it reaches a release. Co-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
985 lines
34 KiB
YAML
985 lines
34 KiB
YAML
# This is a basic workflow to help you get started with Actions
|
|
|
|
name: CI
|
|
|
|
permissions:
|
|
contents: read
|
|
|
|
concurrency:
|
|
group: ${{ github.workflow }}-${{ github.ref }}
|
|
cancel-in-progress: true
|
|
|
|
# Controls when the action will run.
|
|
on:
|
|
# Triggers the workflow on push or pull request events but only for the main branch
|
|
push:
|
|
branches: [develop]
|
|
tags:
|
|
- v*
|
|
- s*
|
|
pull_request:
|
|
branches: [develop, staging, staging-new, main]
|
|
|
|
# Allows you to run this workflow manually from the Actions tab
|
|
workflow_dispatch:
|
|
inputs:
|
|
ref:
|
|
description: 'Ref to run as (e.g. refs/tags/v0.7.370 to test release flow)'
|
|
required: false
|
|
default: 'refs/heads/develop'
|
|
skip_publish:
|
|
description: 'Skip all publishing (npm, Docker, R2) when testing release flow'
|
|
required: false
|
|
default: false
|
|
type: boolean
|
|
|
|
env:
|
|
CacheFolders: |
|
|
communication
|
|
common
|
|
desktop
|
|
desktop-package
|
|
foundations
|
|
qms-desktop-package
|
|
dev
|
|
models
|
|
packages
|
|
plugins
|
|
pods
|
|
server
|
|
server-plugins
|
|
templates
|
|
services
|
|
workers
|
|
tests
|
|
qms-tests
|
|
rush.json
|
|
.prettierrc
|
|
tools
|
|
workers
|
|
ws-tests
|
|
PublishTempFolder: publish_artifacts
|
|
INIT_SCRIPTS_BRANCH: 'main'
|
|
|
|
# A workflow run is made up of one or more jobs that can run sequentially or in parallel
|
|
jobs:
|
|
# This workflow contains a single job called "build"
|
|
build:
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
ref: ${{ github.event.inputs.ref || github.ref }}
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-node-platform
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Installing...
|
|
run: |
|
|
REF="${{ github.event.inputs.ref || github.ref }}"
|
|
if [[ "$REF" == refs/tags/v* ]]; then
|
|
node common/scripts/install-run-rush.js update
|
|
else
|
|
node common/scripts/install-run-rush.js install
|
|
fi
|
|
|
|
- name: Checking model version is updated...
|
|
run: node common/scripts/check_model_version.js
|
|
|
|
- name: Checking for mis-matching dependencies...
|
|
run: node common/scripts/install-run-rush.js check
|
|
|
|
- name: Checking for mis-matching transitive dependencies...
|
|
run: node common/scripts/check-versions.js
|
|
|
|
- name: Model version from git tags
|
|
run: node common/scripts/install-run-rush.js model-version
|
|
|
|
- name: Verify package versions match tag
|
|
if: startsWith(github.event.inputs.ref || github.ref, 'refs/tags/v')
|
|
run: |
|
|
REF="${{ github.event.inputs.ref || github.ref }}"
|
|
VERSION="${REF#refs/tags/v}"
|
|
VERSION="${VERSION#v}"
|
|
node common/scripts/bump.js --check "$VERSION"
|
|
|
|
- name: Building...
|
|
run: node common/scripts/install-run-rush.js build
|
|
|
|
- name: Bundle...
|
|
run: node common/scripts/install-run-rush.js bundle
|
|
|
|
- name: Validate...
|
|
run: node common/scripts/install-run-rush.js validate
|
|
|
|
- name: Cache build results
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-build-results
|
|
with:
|
|
path: ${{ env.CacheFolders}}
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
restore-keys: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
svelte-check:
|
|
needs: build
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
|
|
- name: Cache build results
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-build-results
|
|
with:
|
|
path: ${{ env.CacheFolders}}
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
restore-keys: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
|
|
- name: Checking svelte sources...
|
|
run: node common/scripts/install-run-rush.js svelte-check -v
|
|
formatting:
|
|
needs: build
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
submodules: recursive
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache build results
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-build-results
|
|
with:
|
|
path: ${{ env.CacheFolders}}
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
restore-keys: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
|
|
- name: Formatting...
|
|
run: node common/scripts/install-run-rush.js fast-format --branch ${{ github.base_ref || 'develop' }}
|
|
- name: Check files formatting
|
|
run: |
|
|
echo '================================================================'
|
|
echo 'Checking for diff files'
|
|
echo '================================================================'
|
|
git diff '*.js' '*.ts' '*.svelte' '*.json' '*.yaml' | cat
|
|
[ -z "$(git diff --name-only '*.js' '*.ts' '*.svelte' '*.json' '*.yaml' | cat)" ]
|
|
echo '================================================================'
|
|
test:
|
|
needs: build
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache build results
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-build-results
|
|
with:
|
|
path: ${{ env.CacheFolders}}
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
restore-keys: ${{ runner.os }}-build-${{ env.cache-name }}-${{ github.sha }}
|
|
- name: Login to Docker Hub
|
|
if: ${{ github.event.pull_request.head.repo.full_name == github.repository }}
|
|
continue-on-error: true
|
|
uses: docker/login-action@v4
|
|
with:
|
|
username: hardcoreeng
|
|
password: ${{ secrets.DOCKER_ACCESS_TOKEN }}
|
|
|
|
- name: Prepare server
|
|
run: |
|
|
cd ./tests
|
|
./prepare-tests.sh
|
|
- name: Testing...
|
|
run: node common/scripts/install-run-rush.js test --verbose
|
|
env:
|
|
DB_URL: 'postgresql://root@localhost:26258/defaultdb?sslmode=disable'
|
|
ELASTIC_URL: 'http://localhost:9201'
|
|
MONGO_URL: 'mongodb://localhost:27018'
|
|
uitest:
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-node-platform
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Checking for mis-matching dependencies...
|
|
run: node common/scripts/install-run-rush.js check
|
|
|
|
- name: Checking for mis-matching transitive dependencies...
|
|
run: node common/scripts/check-versions.js
|
|
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install
|
|
|
|
- name: Login to Docker Hub
|
|
if: ${{ github.event.pull_request.head.repo.full_name == github.repository }}
|
|
continue-on-error: true
|
|
uses: docker/login-action@v4
|
|
with:
|
|
username: hardcoreeng
|
|
password: ${{ secrets.DOCKER_ACCESS_TOKEN }}
|
|
- name: Free space
|
|
uses: ./.github/actions/free-disk-space
|
|
- name: Docker Build
|
|
run: node common/scripts/install-run-rush.js docker
|
|
env:
|
|
DOCKER_CLI_HINTS: false
|
|
DOCKER_BUILDKIT: 1
|
|
- name: Configure /etc/hosts
|
|
run: |
|
|
sudo echo "127.0.0.1 huly.local" | sudo tee -a /etc/hosts
|
|
- name: Prepare server
|
|
run: |
|
|
cd ./tests
|
|
export DO_CLEAN="true"
|
|
./prepare.sh
|
|
- name: Install Playwright
|
|
run: |
|
|
cd ./tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js ci
|
|
- name: Start profiling
|
|
run: |
|
|
cd ./tests
|
|
./profile-start.sh
|
|
- name: Run UI tests
|
|
run: |
|
|
cd ./tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js uitest
|
|
- name: Download profile
|
|
run: |
|
|
cd ./tests
|
|
./profile-download.sh
|
|
npm install -g cpupro
|
|
./profile-generate.sh
|
|
- name: Upload profiling results
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: profiling
|
|
path: ./tests/profiles
|
|
- name: 'Store docker logs'
|
|
if: always()
|
|
run: |
|
|
cd ./tests/sanity
|
|
mkdir logs
|
|
cd logs
|
|
docker ps -a --format '{{.Names}}' | xargs -I {} sh -c 'docker logs {} > {}_logs.log 2>&1'
|
|
- name: Upload test results
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: playwright-results
|
|
path: ./tests/sanity/playwright-report/
|
|
# - name: Get Allure history
|
|
# uses: actions/checkout@v6
|
|
# if: ${{ github.ref == 'refs/heads/main' || startsWith(github.ref, 'refs/tags/v') }}
|
|
# continue-on-error: true
|
|
# with:
|
|
# ref: gh-pages
|
|
# path: gh-pages
|
|
# - name: Generates Allure Report
|
|
# uses: simple-elf/allure-report-action@master
|
|
# if: always()
|
|
# id: allure-report
|
|
# with:
|
|
# allure_results: ./tests/sanity/allure-results/
|
|
# gh_pages: gh-pages
|
|
# allure_report: allure-report
|
|
# allure_history: allure-history
|
|
# - name: Upload allure test results
|
|
# if: always()
|
|
# uses: actions/upload-artifact@v6
|
|
# with:
|
|
# name: allure-report
|
|
# path: ./allure-report/
|
|
# - name: Deploy report to Github Pages
|
|
# if: ${{ github.ref == 'refs/heads/main' || startsWith(github.ref, 'refs/tags/v') }}
|
|
# uses: peaceiris/actions-gh-pages@v4
|
|
# with:
|
|
# PERSONAL_TOKEN: ${{ secrets.GITHUB_TOKEN }}
|
|
# PUBLISH_BRANCH: gh-pages
|
|
# PUBLISH_DIR: allure-history
|
|
- name: Upload Logs
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: docker-logs
|
|
path: ./tests/sanity/logs
|
|
# - name: Upload DB snapshot
|
|
# if: always()
|
|
# uses: actions/upload-artifact@v3
|
|
# with:
|
|
# name: db-snapshot
|
|
# path: ./tests/db_dump
|
|
uitest-pg:
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-node-platform
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Checking for mis-matching dependencies...
|
|
run: node common/scripts/install-run-rush.js check
|
|
|
|
- name: Checking for mis-matching transitive dependencies...
|
|
run: node common/scripts/check-versions.js
|
|
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install
|
|
|
|
- name: Login to Docker Hub
|
|
if: ${{ github.event.pull_request.head.repo.full_name == github.repository }}
|
|
continue-on-error: true
|
|
uses: docker/login-action@v4
|
|
with:
|
|
username: hardcoreeng
|
|
password: ${{ secrets.DOCKER_ACCESS_TOKEN }}
|
|
- name: Free space
|
|
uses: ./.github/actions/free-disk-space
|
|
- name: Docker Build
|
|
run: node common/scripts/install-run-rush.js docker
|
|
env:
|
|
DOCKER_CLI_HINTS: false
|
|
DOCKER_BUILDKIT: 1
|
|
- name: Configure /etc/hosts
|
|
run: |
|
|
sudo echo "127.0.0.1 huly.local" | sudo tee -a /etc/hosts
|
|
- name: Prepare server
|
|
run: |
|
|
cd ./tests
|
|
export DO_CLEAN="true"
|
|
./prepare-pg.sh
|
|
- name: Install Playwright
|
|
run: |
|
|
cd ./tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js ci
|
|
- name: Start profiling
|
|
run: |
|
|
cd ./tests
|
|
./profile-start.sh
|
|
- name: Run UI tests
|
|
run: |
|
|
cd ./tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js uitest
|
|
- name: Download profile
|
|
run: |
|
|
cd ./tests
|
|
./profile-download.sh
|
|
npm install -g cpupro
|
|
./profile-generate.sh
|
|
- name: Upload profiling results
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: profiling-pg
|
|
path: ./tests/profiles
|
|
- name: 'Store docker logs'
|
|
if: always()
|
|
run: |
|
|
cd ./tests/sanity
|
|
mkdir logs
|
|
cd logs
|
|
docker ps -a --format '{{.Names}}' | xargs -I {} sh -c 'docker logs {} > {}_logs.log 2>&1'
|
|
- name: Upload test results
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: playwright-results-pg
|
|
path: ./tests/sanity/playwright-report/
|
|
- name: Upload Logs
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: docker-logs-pg
|
|
path: ./tests/sanity/logs
|
|
uitest-qms:
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-node-platform
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Checking for mis-matching dependencies...
|
|
run: node common/scripts/install-run-rush.js check
|
|
|
|
- name: Checking for mis-matching transitive dependencies...
|
|
run: node common/scripts/check-versions.js
|
|
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install
|
|
|
|
- name: Login to Docker Hub
|
|
if: ${{ github.event.pull_request.head.repo.full_name == github.repository }}
|
|
continue-on-error: true
|
|
uses: docker/login-action@v4
|
|
with:
|
|
username: hardcoreeng
|
|
password: ${{ secrets.DOCKER_ACCESS_TOKEN }}
|
|
- name: Free space
|
|
uses: ./.github/actions/free-disk-space
|
|
- name: Docker Build
|
|
run: node common/scripts/install-run-rush.js docker
|
|
env:
|
|
DOCKER_CLI_HINTS: false
|
|
DOCKER_BUILDKIT: 1
|
|
- name: Configure /etc/hosts
|
|
run: |
|
|
sudo echo "127.0.0.1 huly.local" | sudo tee -a /etc/hosts
|
|
- name: Prepare server
|
|
run: |
|
|
cd ./qms-tests
|
|
export DO_CLEAN=true
|
|
./prepare.sh
|
|
- name: Install Playwright
|
|
run: |
|
|
cd ./qms-tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js ci
|
|
- name: Run UI tests
|
|
run: |
|
|
cd ./qms-tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js uitest
|
|
- name: 'Store docker logs'
|
|
if: always()
|
|
run: |
|
|
cd ./qms-tests/sanity
|
|
mkdir logs
|
|
cd logs
|
|
docker ps -a --format '{{.Names}}' | xargs -I {} sh -c 'docker logs {} > {}_logs.log 2>&1'
|
|
- name: Upload test results
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: playwright-results-qms
|
|
path: ./qms-tests/sanity/playwright-report/
|
|
- name: Upload Logs
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: docker-logs-qms
|
|
path: ./qms-tests/sanity/logs
|
|
uitest-workspaces:
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-node-platform
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Checking for mis-matching dependencies...
|
|
run: node common/scripts/install-run-rush.js check
|
|
|
|
- name: Checking for mis-matching transitive dependencies...
|
|
run: node common/scripts/check-versions.js
|
|
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install
|
|
|
|
- name: Build sanity-tests suite
|
|
run: node common/scripts/install-run-rush.js build -t @hcengineering/tests-sanity
|
|
|
|
- name: Login to Docker Hub
|
|
if: ${{ github.event.pull_request.head.repo.full_name == github.repository }}
|
|
continue-on-error: true
|
|
uses: docker/login-action@v4
|
|
with:
|
|
username: hardcoreeng
|
|
password: ${{ secrets.DOCKER_ACCESS_TOKEN }}
|
|
- name: Free space
|
|
uses: ./.github/actions/free-disk-space
|
|
- name: Docker Build
|
|
run: node common/scripts/install-run-rush.js docker
|
|
env:
|
|
DOCKER_CLI_HINTS: false
|
|
DOCKER_BUILDKIT: 1
|
|
- name: Configure /etc/hosts
|
|
run: |
|
|
sudo echo "127.0.0.1 huly.local" | sudo tee -a /etc/hosts
|
|
- name: Prepare server
|
|
run: |
|
|
cd ./ws-tests
|
|
export DO_CLEAN=true
|
|
./prepare.sh
|
|
- name: Run API tests
|
|
run: |
|
|
cd ./ws-tests/api-tests
|
|
node ../../common/scripts/install-run-rush.js validate --to @hcengineering/api-tests
|
|
node ../../common/scripts/install-run-rushx.js api-test --verbose
|
|
- name: Install Playwright
|
|
run: |
|
|
cd ./ws-tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js ci
|
|
- name: Run UI tests
|
|
run: |
|
|
cd ./ws-tests/sanity
|
|
node ../../common/scripts/install-run-rushx.js uitest
|
|
- name: 'Store docker logs'
|
|
if: always()
|
|
run: |
|
|
cd ./ws-tests/sanity
|
|
mkdir logs
|
|
cd logs
|
|
docker ps -a --format '{{.Names}}' | xargs -I {} sh -c 'docker logs {} > {}_logs.log 2>&1'
|
|
- name: Upload API test results
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: playwright-results-api
|
|
path: ./ws-tests/api-tests/playwright-report/
|
|
- name: Upload UI test results
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: playwright-results-ws
|
|
path: ./ws-tests/sanity/playwright-report/
|
|
- name: Upload Logs
|
|
if: always()
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: docker-logs-ws
|
|
path: ./ws-tests/sanity/logs
|
|
docker-build:
|
|
needs: [uitest-workspaces]
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
# https://github.com/actions/runner-images/issues/2840#issuecomment-790492173
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
- name: Free space
|
|
uses: ./.github/actions/free-disk-space
|
|
- name: Set up QEMU
|
|
uses: docker/setup-qemu-action@v4
|
|
- name: Configure docker
|
|
uses: docker/setup-docker-action@v5
|
|
with:
|
|
daemon-config: |
|
|
{
|
|
"features": {
|
|
"containerd-snapshotter": true
|
|
}
|
|
}
|
|
|
|
- name: Checkout init repository
|
|
run: |
|
|
wget https://github.com/hcengineering/init/archive/refs/heads/${{env.INIT_SCRIPTS_BRANCH}}.zip
|
|
unzip ${{env.INIT_SCRIPTS_BRANCH}}.zip -d pods/workspace
|
|
mv pods/workspace/init-${{env.INIT_SCRIPTS_BRANCH}} pods/workspace/init
|
|
rm -rf ${{env.INIT_SCRIPTS_BRANCH}}.zip
|
|
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- uses: pnpm/action-setup@v5
|
|
with:
|
|
version: latest
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-node-platform
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install
|
|
|
|
- name: Model version from git tags
|
|
run: node common/scripts/install-run-rush.js model-version
|
|
|
|
- name: Login to Docker Hub
|
|
if: ${{ github.event.pull_request.head.repo.full_name == github.repository }}
|
|
continue-on-error: true
|
|
uses: docker/login-action@v4
|
|
with:
|
|
username: hardcoreeng
|
|
password: ${{ secrets.DOCKER_ACCESS_TOKEN }}
|
|
|
|
- name: Docker build
|
|
run: |
|
|
node common/scripts/install-run-rush.js docker:build -v
|
|
docker builder prune -a -f
|
|
env:
|
|
DOCKER_CLI_HINTS: false
|
|
DOCKER_EXTRA: --platform=linux/amd64,linux/arm64
|
|
DOCKER_BUILDKIT: 1
|
|
DOCKER_BUILD_CLEANUP: true
|
|
- name: Docker build love-agent
|
|
run: |
|
|
cd ./services/ai-bot/love-agent
|
|
pnpm install && pnpm build
|
|
pnpm docker:build -v
|
|
env:
|
|
DOCKER_CLI_HINTS: false
|
|
DOCKER_EXTRA: --platform=linux/amd64,linux/arm64
|
|
DOCKER_BUILDKIT: 1
|
|
- name: Login to Docker Hub
|
|
if: ${{ github.ref == 'refs/heads/main' || startsWith(github.ref, 'refs/tags/v') || startsWith(github.ref, 'refs/tags/s') }}
|
|
uses: docker/login-action@v4
|
|
with:
|
|
username: hardcoreeng
|
|
password: ${{ secrets.DOCKER_ACCESS_TOKEN }}
|
|
# - name: Docker push staging
|
|
# if: ${{ github.ref == 'refs/heads/main' }}
|
|
# run: node common/scripts/install-run-rush.js docker:staging -v
|
|
- name: Docker push tag
|
|
if: ${{ (startsWith(github.ref, 'refs/tags/v') || startsWith(github.ref, 'refs/tags/s')) && (github.event_name != 'workflow_dispatch' || github.event.inputs.skip_publish != 'true') }}
|
|
run: |
|
|
echo Pushing release of tag ${{ github.ref }}
|
|
node common/scripts/install-run-rush.js docker:push -v
|
|
- name: Docker push love-agent
|
|
if: ${{ (startsWith(github.ref, 'refs/tags/v') || startsWith(github.ref, 'refs/tags/s')) && (github.event_name != 'workflow_dispatch' || github.event.inputs.skip_publish != 'true') }}
|
|
run: |
|
|
echo Pushing love-agent release of tag ${{ github.ref }}
|
|
cd ./services/ai-bot/love-agent
|
|
pnpm docker:push
|
|
|
|
dist-build:
|
|
# if: ${{ github.ref == 'refs/heads/main' || startsWith(github.ref, 'refs/tags/v') || startsWith(github.ref, 'refs/tags/s') }}
|
|
if: ${{ startsWith(github.ref, 'refs/tags/v') || startsWith(github.ref, 'refs/tags/s') }}
|
|
needs: build
|
|
runs-on: macos-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: node
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install --purge
|
|
- name: Model version from git tags
|
|
run: node common/scripts/install-run-rush.js model-version
|
|
- name: Package
|
|
run: node common/scripts/install-run-rush.js package --to desktop -v
|
|
- name: Bump package JSON version
|
|
run: |
|
|
cd desktop-package
|
|
node ../common/scripts/install-run-rushx.js bump
|
|
cat ./package.json
|
|
- name: Install the Apple certificate and provisioning profile
|
|
env:
|
|
DEV_ID_P12_BASE64: ${{ secrets.DEV_ID_P12_BASE64 }}
|
|
DEV_ID_P12_PASSWORD: ${{ secrets.DEV_ID_P12_PASSWORD }}
|
|
KEYCHAIN_PASSWORD: ${{ secrets.KEYCHAIN_PASSWORD }}
|
|
run: |
|
|
# create variables
|
|
CERTIFICATE_PATH=$RUNNER_TEMP/build_certificate.p12
|
|
KEYCHAIN_PATH=$RUNNER_TEMP/app-signing.keychain-db
|
|
|
|
# import certificate from secret
|
|
echo -n "$DEV_ID_P12_BASE64" | base64 --decode -o $CERTIFICATE_PATH
|
|
|
|
# create temporary keychain
|
|
security create-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
|
|
security set-keychain-settings -lut 21600 $KEYCHAIN_PATH
|
|
security unlock-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
|
|
|
|
# import certificate to keychain
|
|
security import $CERTIFICATE_PATH -P "$DEV_ID_P12_PASSWORD" -A -t cert -f pkcs12 -k $KEYCHAIN_PATH
|
|
security set-key-partition-list -S apple-tool:,apple: -k "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
|
|
security list-keychain -d user -s $KEYCHAIN_PATH
|
|
- name: Build distribution's
|
|
env:
|
|
APPLE_ID: ${{ secrets.APPLE_ID }}
|
|
APPLE_ID_APP_PASS: ${{ secrets.APPLE_ID_APP_PASS }}
|
|
TEAM_ID: ${{ secrets.TEAM_ID }}
|
|
run: |
|
|
cd desktop-package
|
|
node ../common/scripts/install-run-rushx.js dist --linux --x64
|
|
node ../common/scripts/install-run-rushx.js dist --windows --x64 --arm64
|
|
node ../common/scripts/install-run-rushx.js dist-signed --macos --x64 --arm64
|
|
./scripts/copy-publish-artifacts.sh ${{ env.PublishTempFolder}}
|
|
- name: Publish distribution assets and version
|
|
if: github.event_name != 'workflow_dispatch' || github.event.inputs.skip_publish != 'true'
|
|
uses: ryand56/r2-upload-action@latest
|
|
with:
|
|
r2-account-id: ${{ secrets.R2_ACCOUNT_ID }}
|
|
r2-access-key-id: ${{ secrets.R2_ACCESS_KEY_ID }}
|
|
r2-secret-access-key: ${{ secrets.R2_SECRET_ACCESS_KEY }}
|
|
r2-bucket: desktop-distro
|
|
source-dir: desktop-package/${{ env.PublishTempFolder}}
|
|
destination-dir: ./
|
|
- name: Upload MacOS
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: Huly-MacOS-x64
|
|
path: ./desktop-package/deploy/Huly-macos-*-x64.dmg
|
|
- name: Upload MacOS arm64
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: Huly-MacOS-arm64
|
|
path: ./desktop-package/deploy/Huly-macos-*-arm64.dmg
|
|
- name: Upload Windows
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: Huly-Windows
|
|
path: ./desktop-package/deploy/Huly-windows-*.zip
|
|
- name: Upload Linux
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: Huly-Linux
|
|
path: ./desktop-package/deploy/Huly-linux-*.zip
|
|
|
|
qms-dist-build:
|
|
# if: ${{ github.ref == 'refs/heads/main' || startsWith(github.ref, 'refs/tags/v') || startsWith(github.ref, 'refs/tags/s') }}
|
|
if: ${{ startsWith(github.ref, 'refs/tags/v') || startsWith(github.ref, 'refs/tags/s') }}
|
|
needs: build
|
|
runs-on: macos-latest
|
|
timeout-minutes: 60
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
fetch-depth: 0
|
|
filter: tree:0
|
|
submodules: recursive
|
|
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: node
|
|
with:
|
|
path: |
|
|
common/temp
|
|
key: ${{ runner.os }}-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: |
|
|
${{ runner.os }}-${{ env.cache-name }}-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install --purge
|
|
- name: Model version from git tags
|
|
run: node common/scripts/install-run-rush.js model-version
|
|
- name: Package
|
|
run: node common/scripts/install-run-rush.js package --to qms-desktop -v
|
|
- name: Bump package JSON version
|
|
run: |
|
|
cd qms-desktop-package
|
|
node ../common/scripts/install-run-rushx.js bump
|
|
cat ./package.json
|
|
- name: Install the Apple certificate and provisioning profile
|
|
env:
|
|
DEV_ID_P12_BASE64: ${{ secrets.DEV_ID_P12_BASE64 }}
|
|
DEV_ID_P12_PASSWORD: ${{ secrets.DEV_ID_P12_PASSWORD }}
|
|
KEYCHAIN_PASSWORD: ${{ secrets.KEYCHAIN_PASSWORD }}
|
|
run: |
|
|
# create variables
|
|
CERTIFICATE_PATH=$RUNNER_TEMP/build_certificate.p12
|
|
KEYCHAIN_PATH=$RUNNER_TEMP/app-signing.keychain-db
|
|
|
|
# import certificate from secret
|
|
echo -n "$DEV_ID_P12_BASE64" | base64 --decode -o $CERTIFICATE_PATH
|
|
|
|
# create temporary keychain
|
|
security create-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
|
|
security set-keychain-settings -lut 21600 $KEYCHAIN_PATH
|
|
security unlock-keychain -p "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
|
|
|
|
# import certificate to keychain
|
|
security import $CERTIFICATE_PATH -P "$DEV_ID_P12_PASSWORD" -A -t cert -f pkcs12 -k $KEYCHAIN_PATH
|
|
security set-key-partition-list -S apple-tool:,apple: -k "$KEYCHAIN_PASSWORD" $KEYCHAIN_PATH
|
|
security list-keychain -d user -s $KEYCHAIN_PATH
|
|
- name: Build distribution's
|
|
env:
|
|
APPLE_ID: ${{ secrets.APPLE_ID }}
|
|
APPLE_ID_APP_PASS: ${{ secrets.APPLE_ID_APP_PASS }}
|
|
TEAM_ID: ${{ secrets.TEAM_ID }}
|
|
run: |
|
|
cd qms-desktop-package
|
|
node ../common/scripts/install-run-rushx.js dist --linux --x64
|
|
node ../common/scripts/install-run-rushx.js dist --windows --x64 --arm64
|
|
node ../common/scripts/install-run-rushx.js dist-signed --macos --x64 --arm64
|
|
./scripts/copy-publish-artifacts.sh ${{ env.PublishTempFolder}}
|
|
- name: Publish distribution assets and version
|
|
if: github.event_name != 'workflow_dispatch' || github.event.inputs.skip_publish != 'true'
|
|
uses: ryand56/r2-upload-action@latest
|
|
with:
|
|
r2-account-id: ${{ secrets.R2_ACCOUNT_ID }}
|
|
r2-access-key-id: ${{ secrets.R2_ACCESS_KEY_ID }}
|
|
r2-secret-access-key: ${{ secrets.R2_SECRET_ACCESS_KEY }}
|
|
r2-bucket: desktop-distro
|
|
source-dir: qms-desktop-package/${{ env.PublishTempFolder}}
|
|
destination-dir: ./
|
|
- name: Upload MacOS
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: TraceX-MacOS-x64
|
|
path: ./qms-desktop-package/deploy/TraceX-macos-*-x64.dmg
|
|
- name: Upload MacOS arm64
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: TraceX-MacOS-arm64
|
|
path: ./qms-desktop-package/deploy/TraceX-macos-*-arm64.dmg
|
|
- name: Upload Windows
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: TraceX-Windows
|
|
path: ./qms-desktop-package/deploy/TraceX-windows-*.zip
|
|
- name: Upload Linux
|
|
uses: actions/upload-artifact@v6
|
|
with:
|
|
name: TraceX-Linux
|
|
path: ./qms-desktop-package/deploy/TraceX-linux-*.zip
|
|
|
|
publish-npm:
|
|
if: startsWith(github.event.inputs.ref || github.ref, 'refs/tags/v') && (github.event_name != 'workflow_dispatch' || github.event.inputs.skip_publish != 'true')
|
|
needs: build
|
|
runs-on: ubuntu-latest
|
|
timeout-minutes: 30
|
|
steps:
|
|
- uses: actions/checkout@v6
|
|
with:
|
|
ref: ${{ github.event.inputs.ref || github.ref }}
|
|
fetch-depth: 0
|
|
- uses: actions/setup-node@v6
|
|
with:
|
|
node-version-file: '.nvmrc'
|
|
- name: Cache node modules
|
|
uses: actions/cache@v5
|
|
env:
|
|
cache-name: cache-node-platform
|
|
with:
|
|
path: common/temp
|
|
key: ${{ runner.os }}-build-cache-node-platform-${{ hashFiles('**/pnpm-lock.yaml') }}
|
|
restore-keys: ${{ runner.os }}-build-cache-node-platform-
|
|
- name: Installing...
|
|
run: node common/scripts/install-run-rush.js install
|
|
- name: Building...
|
|
run: node common/scripts/install-run-rush.js build
|
|
- name: Publish to npm
|
|
env:
|
|
NPM_TOKEN: ${{ secrets.NPM_TOKEN }}
|
|
NPM_CONFIG_USERCONFIG: ${{ github.workspace }}/common/config/rush/.npmrc-publish
|
|
run: |
|
|
if [ -z "$NPM_TOKEN" ]; then
|
|
echo "::error::NPM_TOKEN secret is not set. Add it in repository Settings > Secrets and variables > Actions."
|
|
exit 1
|
|
fi
|
|
REF="${{ github.event.inputs.ref || github.ref }}"
|
|
VERSION="${REF#refs/tags/v}"
|
|
VERSION="${VERSION#v}"
|
|
node common/scripts/bump.js --check "$VERSION"
|
|
node common/scripts/safe-publish.js
|