check / check (push) Successful in 24s
The policy said a repository whose version comes from git tags needs `fetch-depth: 0` on its CI checkout, because the checkout action clones shallow with no tags; every repository's version comes from `git describe --tags --always`, but the canonical `.gitea/workflows/check.yml` did not set it, so CI stamped a bare short commit id where a local build of a tagged repository stamps the tag. The checkout step now sets `fetch-depth: 0` with a one-line comment, and the workflow bullet of `prompts/REPO_POLICIES.md` and both checklists name it beside `persist-credentials: false` and the `concurrency` block, as part of what the workflow does. Unverified: a live run, which waits on the shared runner. Model: opus-5-5
19 lines
679 B
YAML
19 lines
679 B
YAML
name: check
|
|
on: [push]
|
|
# Free the shared runner: a new push cancels only the same branch's older run.
|
|
concurrency:
|
|
group: ${{ github.workflow }}-${{ github.ref }}
|
|
cancel-in-progress: true
|
|
jobs:
|
|
check:
|
|
runs-on: ubuntu-latest
|
|
steps:
|
|
# actions/checkout v4.2.2, 2026-02-22
|
|
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683
|
|
# script/cibuild needs no token, so none is left in .git/config.
|
|
with:
|
|
persist-credentials: false
|
|
# All history and tags, so git describe finds the version tag.
|
|
fetch-depth: 0
|
|
- run: script/cibuild
|