Watch
0
0
Fork
You've already forked hyperhive
0

ci: run nothing but a main-only bin-cache push on the public forge
Some checks were skipped
public bin cache / build + push to preem:grid (push) Has been skipped

Guards internal-only jobs (ci.yml, coverage.yml, flake-update.yml) with
`vars.PUBLIC_CACHE != 'true'` and adds public-cache.yml, guarded to the
inverse, to build the deployed closures and push them to the public
attic cache on a push to main.

`PUBLIC_CACHE` is a repo Actions variable, opt-in only on the public
copy: unset here, it leaves internal CI's `!=` guards true so internal
jobs always run. Job-level `if:` cannot see the `github`/`forgejo`
context at all on this runner (confirmed empirically — a
`github.server_url` comparison always evaluates false at job level,
though the identical comparison resolves correctly inside a step),
so `vars.*`, which is available at job level, is the only usable
opt-in signal here.
This commit is contained in:
atlas 2026-09-28 16:30:35 +02:00
commit 97c4771514
4 changed files with 52 additions and 0 deletions

View file

@ -10,6 +10,7 @@ on:
jobs:
check:
name: nix flake check
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
# 30 min is well above a cold-cache rebuild (~15 min observed) and well
# under the runner's 3h cap
@ -21,6 +22,7 @@ jobs:
tracker-tags:
name: tracker-tag lint
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 5
steps:
@ -30,6 +32,7 @@ jobs:
comment-blocks:
name: comment-block lint
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 5
steps:
@ -39,6 +42,7 @@ jobs:
doc-refs:
name: doc-pointer lint
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 5
steps:
@ -48,6 +52,7 @@ jobs:
attribution-trailers:
name: attribution-trailer lint
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 5
steps:
@ -59,6 +64,7 @@ jobs:
dashboard-descriptions:
name: dashboard-description lint
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 5
steps:
@ -70,6 +76,7 @@ jobs:
shellcheck:
name: shellcheck
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 10
steps:
@ -86,6 +93,7 @@ jobs:
prose-lint:
name: prose lint (vale)
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 5
steps:
@ -98,6 +106,7 @@ jobs:
prose-lint-errors:
name: prose lint (vale, errors)
if: vars.PUBLIC_FORGE != 'true'
runs-on: [hive-ci]
timeout-minutes: 5
steps: