Compare commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
9c3884e031 | ||
|
|
260dc7bb58 | ||
|
|
7ef90996f6 | ||
|
|
bfba148f76 |
1 changed files with 4 additions and 18 deletions
22
docs/ci.md
22
docs/ci.md
|
|
@ -110,24 +110,10 @@ to avoid provisioning collisions.
|
||||||
|
|
||||||
## CI workflow
|
## CI workflow
|
||||||
|
|
||||||
The single CI job is defined in `.forgejo/workflows/ci.yml`:
|
Three jobs are defined in [`.forgejo/workflows/ci.yml`](../.forgejo/workflows/ci.yml):
|
||||||
|
`nix flake check`, `tracker-tag lint`, and `comment-block lint`. All three are
|
||||||
```yaml
|
required — a lint failure blocks merge. `hive-forge ci-rerun --pr N` dispatches
|
||||||
name: CI
|
a `workflow_dispatch` retrigger without an empty commit.
|
||||||
on:
|
|
||||||
pull_request:
|
|
||||||
branches: ["**"]
|
|
||||||
jobs:
|
|
||||||
check:
|
|
||||||
name: nix flake check
|
|
||||||
runs-on: [hive-ci]
|
|
||||||
steps:
|
|
||||||
- uses: actions/checkout@v3
|
|
||||||
- name: check
|
|
||||||
run: nix flake check
|
|
||||||
```
|
|
||||||
|
|
||||||
This runs on every PR, executing all flake checks (treefmt, rustfmt, cargo test, cargo clippy, module evaluation). No `--no-build`: the checks' derivations are the canonical source of truth.
|
|
||||||
|
|
||||||
## Security: unsandboxed builds and trusted contributors
|
## Security: unsandboxed builds and trusted contributors
|
||||||
|
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue