chore: Sync deployment #4
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: check | |
| permissions: | |
| contents: read | |
| on: | |
| push: | |
| pull_request: | |
| workflow_dispatch: | |
| inputs: | |
| ref: | |
| description: "The ref (branch or SHA) to process" | |
| required: false | |
| type: string | |
| concurrency: | |
| group: ${{ github.workflow }}-${{ github.head_ref || github.run_id }} | |
| cancel-in-progress: true | |
| defaults: | |
| run: | |
| shell: bash -xe {0} | |
| jobs: | |
| check-dev-deps: | |
| name: Check dev-deps.txt | |
| runs-on: ubuntu-24.04 | |
| steps: | |
| - uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0 | |
| with: | |
| ref: ${{ github.event.inputs.ref }} # Use the ref if provided, otherwise defaults to the current branch/commit | |
| - uses: nixbuild/nix-quick-install-action@v34 | |
| with: | |
| github_access_token: ${{ secrets.GITHUB_TOKEN }} | |
| nix_conf: | | |
| extra-substituters = https://obeli-sk.cachix.org | |
| extra-trusted-public-keys = obeli-sk.cachix.org-1:31iM9GWSEhAXvvuTWQ7CvAcwvgRzsuJ9yJghywSd3Jw= | |
| - name: Populate the nix store | |
| run: nix develop --command echo | |
| - name: Regenerate dev-deps.txt | |
| run: nix develop --command ./scripts/dev-deps.sh | |
| - name: Check dev-deps.txt | |
| run: | | |
| cat dev-deps.txt | |
| if ! git diff --quiet -- dev-deps.txt; then | |
| echo "dev-deps.txt is stale, run ./scripts/dev-deps.sh:" | |
| git diff -- dev-deps.txt | |
| exit 1 | |
| fi | |
| verify: | |
| runs-on: ubuntu-24.04 | |
| steps: | |
| - uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0 | |
| with: | |
| ref: ${{ github.event.inputs.ref }} # Use the ref if provided, otherwise defaults to the current branch/commit | |
| - uses: nixbuild/nix-quick-install-action@v34 | |
| with: | |
| github_access_token: ${{ secrets.GITHUB_TOKEN }} | |
| nix_conf: | | |
| extra-substituters = https://obeli-sk.cachix.org | |
| extra-trusted-public-keys = obeli-sk.cachix.org-1:31iM9GWSEhAXvvuTWQ7CvAcwvgRzsuJ9yJghywSd3Jw= | |
| - name: Populate the nix store | |
| run: nix develop --command echo | |
| # Compile the JS components, resolve every FFQN import, and type-check the | |
| # deployment against the runtime images, without starting a server or db. | |
| - name: obelisk server verify | |
| run: nix develop --command obelisk server verify --server-config server.toml -d deployment.toml |