Skip to content

Update minor dependencies #3686

Update minor dependencies

Update minor dependencies #3686

Workflow file for this run

name: Tests # Run tests and upload coverage
on:
pull_request:
push:
branches: [main]
workflow_dispatch:
concurrency:
group: ${{ github.workflow }}-${{ github.ref || github.ref_name }}
cancel-in-progress: true
permissions:
contents: read
jobs:
tests:
name: ${{ matrix.session }} ${{ matrix.python }} / ${{ matrix.os }}
runs-on: ${{ matrix.os }}
permissions:
contents: read
strategy:
fail-fast: false
matrix:
include:
- { python: "3.10", os: "ubuntu-latest", session: "tests" }
- { python: "3.11", os: "ubuntu-latest", session: "tests" }
- { python: "3.12", os: "ubuntu-latest", session: "pre-commit" }
- { python: "3.12", os: "ubuntu-latest", session: "xdoctest" }
- { python: "3.12", os: "ubuntu-latest", session: "docs-build" }
- { python: "3.12", os: "ubuntu-latest", session: "tests" }
- { python: "3.12", os: "windows-latest", session: "tests" }
- { python: "3.12", os: "ubuntu-latest", session: "pip-audit" }
- { python: "3.13", os: "ubuntu-latest", session: "tests" }
# - { python: "3.10", os: "ubuntu-latest", session: "mypy" }
# - { python: "3.12", os: "ubuntu-latest", session: "mypy" }
# - { python: "3.10", os: "ubuntu-latest", session: "typeguard" }
env:
NOXSESSION: ${{ matrix.session }}
FORCE_COLOR: "1"
PRE_COMMIT_COLOR: "always"
steps:
- name: Harden Runner
uses: step-security/harden-runner@bf7454d06d71f1098171f2acdf0cd4708d7b5920 # v2.20.0
with:
disable-sudo: true
egress-policy: block
disable-telemetry: false
allowed-endpoints: >
auth.docker.io:443
files.pythonhosted.org:443
ghcr.io:443
github.com:443
pkg-containers.githubusercontent.com:443
production.cloudflare.docker.com:443
pypi.org:443
registry-1.docker.io:443
registry.npmjs.org:443
release-assets.githubusercontent.com:443
- name: Check out the repository
uses: actions/checkout@d23441a48e516b6c34aea4fa41551a30e30af803 # v6.1.0
- name: Set up Python ${{ matrix.python }}
uses: actions/setup-python@ece7cb06caefa5fff74198d8649806c4678c61a1 # v6.3.0
with:
python-version: ${{ matrix.python }}
- name: Upgrade pip
run: |
pip install --constraint=.github/workflows/constraints.txt pip
pip --version
- name: Install UV
run: |
pipx install --pip-args=--constraint=.github/workflows/constraints.txt uv
uv --version
- name: Install Nox
run: |
uvx pipx install --pip-args=--constraint=.github/workflows/constraints.txt nox
nox --version
- name: Compute pre-commit cache key
if: matrix.session == 'pre-commit'
id: pre-commit-cache
shell: python
run: |
import hashlib
import sys
import os
env_file = os.getenv("GITHUB_ENV")
python="py{}.{}".format(*sys.version_info[:2])
payload=sys.version.encode() + sys.executable.encode()
digest=hashlib.sha256(payload).hexdigest()
cache_key="${{ runner.os }}-{}-{}-pre-commit".format(python, digest[:8])
with open(env_file, "a") as my_file:
my_file.write(f"PC_CACHE_KEY={cache_key}")
- name: Restore pre-commit cache
uses: actions/cache@caa296126883cff596d87d8935842f9db880ef25 # v5.1.0
if: matrix.session == 'pre-commit'
with:
path: ~/.cache/pre-commit
key: ${{ env.PC_CACHE_KEY }}-${{ hashFiles('.pre-commit-config.yaml') }}
restore-keys: |
${{ env.PC_CACHE_KEY }}-
- name: Run Nox
env:
UV_PREVIEW: 1
run: |
nox --python=${{ matrix.python }}
- name: Upload coverage data
if: always() && matrix.session == 'tests' && matrix.python == '3.11' && matrix.os == 'ubuntu-latest'
uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
with:
# Hack for v4.4 hidden file change
name: coverage-data
path: ".coverage*"
include-hidden-files: true
- name: Upload documentation
if: matrix.session == 'docs-build'
uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
with:
name: docs
path: docs/_build
coverage:
runs-on: ubuntu-latest
needs: tests
steps:
- name: Check out the repository
uses: actions/checkout@d23441a48e516b6c34aea4fa41551a30e30af803 # v6.1.0
- name: Set up Python
uses: actions/setup-python@ece7cb06caefa5fff74198d8649806c4678c61a1 # v6.3.0
with:
python-version: "3.14"
- name: Upgrade pip
run: |
pip install --constraint=.github/workflows/constraints.txt pip
pip --version
- name: Install UV
run: |
pipx install --pip-args=--constraint=.github/workflows/constraints.txt uv
uv --version
- name: Install Nox
run: |
uvx pipx install --pip-args=--constraint=.github/workflows/constraints.txt nox
nox --version
- name: Download coverage data
uses: actions/download-artifact@3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c # v8.0.1
with:
name: coverage-data
- name: Combine coverage data and display human readable report
env:
UV_PREVIEW: 1
run: |
nox --session=coverage
- name: Create coverage report
env:
UV_PREVIEW: 1
run: |
nox --session=coverage -- xml
- name: Upload coverage report
uses: codecov/codecov-action@e79a6962e0d4c0c17b229090214935d2e33f8354 # v6.0.1