check / check (push) Successful in 54s
A plain `docker build .` of a clone stamped `dev`: `.dockerignore` left out `.git` and the build stage declared `ARG VERSION=dev`. `.git` now reaches the build context without `.git/config`, which can hold a credential, and the build stage takes the VERSION build argument when given, otherwise `git describe --tags --always`. A context that carries `.git` but yields no version fails the build. `script/docker` is replaced with the current canonical copy, which passes the version it derives on the host. Model: opus-5-5
32 lines
815 B
Plaintext
32 lines
815 B
Plaintext
# Never exclude Go sources, go.mod, go.sum or .golangci.yml: the lint
|
|
# and test stages only ever examine what reaches the build context, and
|
|
# an exclusion here makes them pass over a tree that is missing a
|
|
# package. script/assert-context-complete exists to catch exactly that,
|
|
# and will fail the build rather than let it happen silently.
|
|
.gitea/
|
|
bin/
|
|
data/
|
|
AGENTS.md
|
|
README.md
|
|
docs/
|
|
LICENSE
|
|
.editorconfig
|
|
.prettierrc
|
|
.prettierignore
|
|
.env
|
|
.env.*
|
|
*.db
|
|
*.sqlite
|
|
*.sqlite3
|
|
.DS_Store
|
|
.idea/
|
|
.vscode/
|
|
tmp/
|
|
temp/
|
|
|
|
# .git is sent without its config. Without a VERSION build argument the
|
|
# stage that compiles runs `git describe --tags --always` on .git, which
|
|
# does not need .git/config; that file can hold a credential, such as a
|
|
# password in a remote URL or the token the CI checkout step stores there.
|
|
.git/config
|