-
-
Notifications
You must be signed in to change notification settings - Fork 2k
130 lines (110 loc) · 5.64 KB
/
Copy pathci.yml
File metadata and controls
130 lines (110 loc) · 5.64 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
# Thanks to https://github.com/coil-kt/coil/blob/master/.github/workflows/ci.yml
name: CI
on:
push:
tags:
- '*'
pull_request:
jobs:
build:
name: Build
runs-on: ubuntu-latest
permissions:
contents: read
security-events: write
steps:
- name: Checkout
uses: actions/checkout@v7
with:
fetch-depth: 100
- uses: actions/setup-java@v5
with:
distribution: 'zulu'
java-version: |
17
21
- name: Setup Gradle
uses: gradle/actions/setup-gradle@v6.2.0
- name: Validate gradle wrapper
uses: gradle/actions/wrapper-validation@v6.2.0
- name: Copy CI gradle.properties
run: mkdir -p ~/.gradle ; cp .github/ci-gradle.properties ~/.gradle/gradle.properties
- name: Build Debug
run: ./gradlew clean app:assembleDebug
- name: Run Lint
if: github.event_name == 'pull_request'
run: ./gradlew lintDebug
- name: Upload Lint SARIF (materialdrawer)
if: (success() || failure()) && github.event_name == 'pull_request' && github.event.pull_request.head.repo.fork == false && hashFiles('materialdrawer/build/reports/lint-results-debug.sarif') != ''
uses: github/codeql-action/upload-sarif@v4.37.6
with:
sarif_file: 'materialdrawer/build/reports/lint-results-debug.sarif'
category: android-lint-materialdrawer
- name: Upload Lint SARIF (materialdrawer-iconics)
if: (success() || failure()) && github.event_name == 'pull_request' && github.event.pull_request.head.repo.fork == false && hashFiles('materialdrawer-iconics/build/reports/lint-results-debug.sarif') != ''
uses: github/codeql-action/upload-sarif@v4.37.6
with:
sarif_file: 'materialdrawer-iconics/build/reports/lint-results-debug.sarif'
category: android-lint-materialdrawer-iconics
- name: Upload Lint SARIF (materialdrawer-nav)
if: (success() || failure()) && github.event_name == 'pull_request' && github.event.pull_request.head.repo.fork == false && hashFiles('materialdrawer-nav/build/reports/lint-results-debug.sarif') != ''
uses: github/codeql-action/upload-sarif@v4.37.6
with:
sarif_file: 'materialdrawer-nav/build/reports/lint-results-debug.sarif'
category: android-lint-materialdrawer-nav
- name: Upload Lint SARIF (app)
if: (success() || failure()) && github.event_name == 'pull_request' && github.event.pull_request.head.repo.fork == false && hashFiles('app/build/reports/lint-results-debug.sarif') != ''
uses: github/codeql-action/upload-sarif@v4.37.6
with:
sarif_file: 'app/build/reports/lint-results-debug.sarif'
category: android-lint-app
- name: Prepare Keystore and Local.
if: startsWith(github.ref, 'refs/tags/')
run: |
echo "${{ secrets.KEYSTORE }}" > opensource.jks.asc
gpg -d --passphrase "${{ secrets.KEYSTORE_PASSPHRASE }}" --batch "opensource.jks.asc" > "app/opensource.jks"
- name: Build Release App
if: startsWith(github.ref, 'refs/tags/')
run: ./gradlew app:assembleRelease app:bundleRelease -P"com.mikepenz.android.signing.enabled"="true" -P"com.mikepenz.android.signing.storeFile"="opensource.jks" -P"com.mikepenz.android.signing.storePassword"="${{ secrets.STORE_PASSWORD }}" -P"com.mikepenz.android.signing.keyAlias"="${{ secrets.KEY_ALIAS }}" -P"com.mikepenz.android.signing.keyPassword"="${{ secrets.KEY_PASSWORD }}"
- name: Relase Sonatype
if: startsWith(github.ref, 'refs/tags/')
run: |
./gradlew build -x test -x lint
./gradlew materialdrawer:publishAllPublicationsToMavenCentralRepository -x test -x lint -Plibrary_only --no-configure-on-demand --no-parallel
./gradlew materialdrawer-nav:publishAllPublicationsToMavenCentralRepository -x test -x lint -Plibrary_nav_only --no-configure-on-demand --no-parallel
./gradlew materialdrawer-iconics:publishAllPublicationsToMavenCentralRepository -x test -x lint -Plibrary_iconics_only --no-configure-on-demand --no-parallel
env:
ORG_GRADLE_PROJECT_mavenCentralUsername: ${{ secrets.NEXUS_USERNAME }}
ORG_GRADLE_PROJECT_mavenCentralPassword: ${{ secrets.NEXUS_PASSWORD }}
ORG_GRADLE_PROJECT_signingInMemoryKeyId: ${{ secrets.SIGNING_KEY_ID }}
ORG_GRADLE_PROJECT_signingInMemoryKey: ${{ secrets.SIGNING_PRIVATE_KEY }}
ORG_GRADLE_PROJECT_signingInMemoryKeyPassword: ${{ secrets.SIGNING_PASSWORD }}
- name: Collect artifacts
run: |
COLLECT_PWD=${PWD}
mkdir -p "artifacts"
find . -name "*.apk" -type f -exec cp {} "artifacts" \;
find . -name "*.aab" -type f -exec cp {} "artifacts" \;
- name: Archive Artifacts
uses: actions/upload-artifact@v7
with:
name: "App-Artifacts"
path: artifacts/*
- name: Build Changelog
id: github_release
uses: mikepenz/release-changelog-builder-action@v6
if: startsWith(github.ref, 'refs/tags/')
with:
configuration: ".github/config/configuration.json"
ignorePreReleases: ${{ !contains(github.ref, '-') }}
env:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
- name: Release
uses: mikepenz/action-gh-release@v2
if: startsWith(github.ref, 'refs/tags/')
with:
body: ${{steps.github_release.outputs.changelog}}
prerelease: ${{ contains(github.ref, '-rc') || contains(github.ref, '-b') || contains(github.ref, '-a') }}
files: artifacts/*
env:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}