bin compat #4544
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
# This file was automatically generated by sbt-github-actions using the | |
# githubWorkflowGenerate task. You should add and commit this file to | |
# your git repository. It goes without saying that you shouldn't edit | |
# this file by hand! Instead, if you wish to make changes, you should | |
# change your sbt build configuration to revise the workflow description | |
# to meet your needs, then regenerate this file. | |
name: Continuous Integration | |
on: | |
pull_request: | |
branches: ['**', '!update/**', '!pr/**'] | |
push: | |
branches: ['**', '!update/**', '!pr/**'] | |
tags: [v*] | |
env: | |
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
concurrency: | |
group: ${{ github.workflow }} @ ${{ github.ref }} | |
cancel-in-progress: true | |
jobs: | |
build: | |
name: Build and Test | |
strategy: | |
matrix: | |
os: [ubuntu-latest] | |
scala: [3] | |
java: [temurin@17] | |
runs-on: ${{ matrix.os }} | |
timeout-minutes: 60 | |
steps: | |
- name: Install sbt | |
uses: sbt/setup-sbt@v1 | |
- name: Checkout current branch (full) | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
- name: Setup Java (temurin@17) | |
id: setup-java-temurin-17 | |
if: matrix.java == 'temurin@17' | |
uses: actions/setup-java@v4 | |
with: | |
distribution: temurin | |
java-version: 17 | |
cache: sbt | |
- name: sbt update | |
if: matrix.java == 'temurin@17' && steps.setup-java-temurin-17.outputs.cache-hit == 'false' | |
run: sbt -v -J-Xmx6g +update | |
- name: Docker compose up | |
run: docker compose up -d | |
- name: Check that workflows are up to date | |
run: sbt -v -J-Xmx6g githubWorkflowCheck | |
- name: Check headers and formatting | |
if: matrix.java == 'temurin@17' && matrix.os == 'ubuntu-latest' | |
run: sbt -v -J-Xmx6g '++ ${{ matrix.scala }}' headerCheckAll scalafmtCheckAll 'project /' scalafmtSbtCheck lucumaScalafmtCheck lucumaScalafixCheck | |
- name: Check scalafix lints | |
if: matrix.java == 'temurin@17' && matrix.os == 'ubuntu-latest' | |
run: sbt -v -J-Xmx6g '++ ${{ matrix.scala }}' 'scalafixAll --check' | |
- name: Test | |
run: sbt -v -J-Xmx6g '++ ${{ matrix.scala }}' test | |
- name: Check binary compatibility | |
if: matrix.java == 'temurin@17' && matrix.os == 'ubuntu-latest' | |
run: sbt -v -J-Xmx6g '++ ${{ matrix.scala }}' mimaReportBinaryIssues | |
- name: Generate API documentation | |
if: matrix.java == 'temurin@17' && matrix.os == 'ubuntu-latest' | |
run: sbt -v -J-Xmx6g '++ ${{ matrix.scala }}' doc | |
- name: Validate Migrations | |
if: github.event_name == 'pull_request' | |
uses: gemini-hlsw/migration-validator-action@main | |
with: | |
path: modules/service/src/main/resources/db/migration/ | |
- name: Aggregate coverage reports | |
run: sbt -v -J-Xmx6g '++ ${{ matrix.scala }}' coverageReport coverageAggregate | |
- name: Upload code coverage data | |
uses: codecov/codecov-action@v4 | |
- name: Docker compose down | |
run: docker compose down | |
publish: | |
name: Publish Artifacts | |
needs: [build] | |
if: github.event_name != 'pull_request' && (startsWith(github.ref, 'refs/tags/v')) | |
strategy: | |
matrix: | |
os: [ubuntu-latest] | |
java: [temurin@17] | |
runs-on: ${{ matrix.os }} | |
steps: | |
- name: Install sbt | |
uses: sbt/setup-sbt@v1 | |
- name: Checkout current branch (full) | |
uses: actions/checkout@v4 | |
with: | |
fetch-depth: 0 | |
- name: Setup Java (temurin@17) | |
id: setup-java-temurin-17 | |
if: matrix.java == 'temurin@17' | |
uses: actions/setup-java@v4 | |
with: | |
distribution: temurin | |
java-version: 17 | |
cache: sbt | |
- name: sbt update | |
if: matrix.java == 'temurin@17' && steps.setup-java-temurin-17.outputs.cache-hit == 'false' | |
run: sbt -v -J-Xmx6g +update | |
- name: Import signing key | |
if: env.PGP_SECRET != '' && env.PGP_PASSPHRASE == '' | |
env: | |
PGP_SECRET: ${{ secrets.PGP_SECRET }} | |
PGP_PASSPHRASE: ${{ secrets.PGP_PASSPHRASE }} | |
run: echo $PGP_SECRET | base64 -d -i - | gpg --import | |
- name: Import signing key and strip passphrase | |
if: env.PGP_SECRET != '' && env.PGP_PASSPHRASE != '' | |
env: | |
PGP_SECRET: ${{ secrets.PGP_SECRET }} | |
PGP_PASSPHRASE: ${{ secrets.PGP_PASSPHRASE }} | |
run: | | |
echo "$PGP_SECRET" | base64 -d -i - > /tmp/signing-key.gpg | |
echo "$PGP_PASSPHRASE" | gpg --pinentry-mode loopback --passphrase-fd 0 --import /tmp/signing-key.gpg | |
(echo "$PGP_PASSPHRASE"; echo; echo) | gpg --command-fd 0 --pinentry-mode loopback --change-passphrase $(gpg --list-secret-keys --with-colons 2> /dev/null | grep '^sec:' | cut --delimiter ':' --fields 5 | tail -n 1) | |
- name: Publish | |
env: | |
SONATYPE_USERNAME: ${{ secrets.SONATYPE_USERNAME }} | |
SONATYPE_PASSWORD: ${{ secrets.SONATYPE_PASSWORD }} | |
SONATYPE_CREDENTIAL_HOST: ${{ secrets.SONATYPE_CREDENTIAL_HOST }} | |
run: sbt -v -J-Xmx6g tlCiRelease |