# Lint stage — fast feedback on formatting and lint issues # golangci/golangci-lint:v2.0.2 (2026-03-14) FROM golangci/golangci-lint@sha256:d55581f7797e7a0877a7c3aaa399b01bdc57d2874d6412601a046cc4062cb62e AS lint WORKDIR /src COPY go.mod go.sum ./ RUN go mod download COPY . . # Touch .pb.go so make does not try to regenerate via protoc (file is committed) RUN touch mfer/mf.pb.go # Go half of fmt-check only: this image has no node, so no prettier. The # markdown half runs in the mdfmt stage below. RUN make fmt-check-go RUN make lint # Markdown/JSON format stage — prettier needs node, which the Go images # do not have. node:22.17.0-bookworm-slim (2026-08-09); ships node # 22.17.0 and yarn 1.22.22, the versions script/bootstrap pins. FROM node@sha256:b04ce4ae4e95b522112c2e5c52f781471a5cbc3b594527bcddedee9bc48c03a0 AS mdfmt WORKDIR /src COPY package.json yarn.lock ./ RUN yarn install --frozen-lockfile COPY . . # No make in this image; call the script entrypoint directly. RUN script/prettier --check # Build stage — tests and compilation # golang:1.23 (2026-03-14) FROM golang@sha256:60deed95d3888cc5e4d9ff8a10c54e5edc008c6ae3fba6187be6fb592e19e8c0 AS builder # Force BuildKit to run the lint and mdfmt stages by creating stage dependencies COPY --from=lint /src/go.sum /dev/null COPY --from=mdfmt /src/go.sum /dev/null WORKDIR /src COPY go.mod go.sum ./ RUN go mod download COPY . . # Touch .pb.go so make does not try to regenerate via protoc (file is committed) RUN touch mfer/mf.pb.go RUN make test RUN cd cmd/mfer && go build -tags urfave_cli_no_docs -o /mfer . FROM scratch COPY --from=builder /mfer /mfer ENTRYPOINT ["/mfer"]