✨ feature: Adds the basic terraform needed, example, tests and ci #4
Workflow file for this run
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
name: Lint | |
on: | |
push: | |
branches: [main] | |
pull_request: | |
branches: [main] | |
types: [opened, synchronize, reopened] | |
permissions: | |
contents: read | |
jobs: | |
tflint: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: tflint | |
uses: reviewdog/action-tflint@ed9fc532031da01c06455483e57ef4ba8573ad61 # v1.23.0 | |
with: | |
github_token: ${{ github.token }} | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file | |
tflint_version: v0.49.0 | |
tflint_init: true | |
flags: --no-module --recursive | |
trivy: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: trivy | |
uses: reviewdog/action-trivy@82e31f8d1342b353de36678a3cff2dd31ab2bf94 # v1.10.0 | |
with: | |
github_token: ${{ github.token }} | |
trivy_command: config | |
trivy_target: "." | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file | |
golangci-lint: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: golangci-lint | |
uses: reviewdog/action-golangci-lint@7708105983c614f7a2725e2172908b7709d1c3e4 # v2.6.2 | |
with: | |
github_token: ${{ github.token }} | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file | |
workdir: test/ | |
go_version_file: test/go.mod | |
prettier: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: create package.json | |
run: | | |
echo -e '{"devDependencies": {"prettier": "^3.1.0"}}' > package.json | |
- name: prettier | |
uses: EPMatt/reviewdog-action-prettier@93fb51ed5da157256e1d8c998fb249837304050c # v1.2.0 | |
with: | |
github_token: ${{ github.token }} | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file | |
misspell: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: misspell | |
uses: reviewdog/action-misspell@278e1b3c7dd09d2827fa080919a40db73ccafe24 # v1.22.0 | |
with: | |
github_token: ${{ github.token }} | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file | |
exclude: | | |
./.git/* | |
./.cache/* | |
alex: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: alex | |
uses: reviewdog/action-alex@95457e9fb31e708d898774ca8e25be56d0766e84 # v1.12.0 | |
with: | |
github_token: ${{ github.token }} | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file | |
alex_flags: | | |
* .github/* .github/workflows/* docs/* test/* examples/complete/* | |
markdownlint: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: markdownlint | |
uses: reviewdog/action-markdownlint@af20b94e5c376c5b964555d9c21c2d9df8b89975 # v0.23.0 | |
with: | |
github_token: ${{ github.token }} | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file | |
markdownlint_flags: | | |
--disable MD033 MD013 -- . | |
actionlint: | |
runs-on: ubuntu-latest | |
permissions: | |
pull-requests: write | |
steps: | |
- name: Harden Runner | |
uses: step-security/harden-runner@17d0e2bd7d51742c71671bd19fa12bdc9d40a3d6 # v2.8.1 | |
with: | |
egress-policy: audit | |
- uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7 | |
- name: actionlint | |
uses: reviewdog/action-actionlint@d99f1ceaf59e7db022a790dc308ccccb68dda71a # v1.53.0 | |
with: | |
github_token: ${{ github.token }} | |
reporter: github-pr-review | |
fail_on_error: "false" | |
filter_mode: file |