Check / check (pull_request) Successful in 4m12s
.dockerignore now lists every .gitignore pattern, each with **/ so Docker matches it in every directory as git does, plus the top-level data/ directory. git-ignored secrets such as .env.local, *.key files and data/session.key no longer reach the build stages or the build cache. A last !.git/** line sends all of .git again, since git never applies these patterns inside it, so a branch named like fix/session.key still resolves. No tracked file is listed, so the version still comes from git describe without -dirty. data/, where upaasd keeps its database and session key when run from the checkout, is now git-ignored. Model: opus-5-5
36 lines
750 B
Plaintext
36 lines
750 B
Plaintext
# .git is sent so that `make build` in the Dockerfile can stamp the commit into
|
|
# upaas. List no tracked file here: git would see it as deleted in the build and
|
|
# the version would end in -dirty.
|
|
|
|
# The patterns of .gitignore; **/ makes Docker match them in every directory.
|
|
**/.DS_Store
|
|
**/Thumbs.db
|
|
**/*.swp
|
|
**/*.swo
|
|
**/*~
|
|
**/*.bak
|
|
**/.idea/
|
|
**/.vscode/
|
|
**/*.sublime-*
|
|
**/node_modules/
|
|
**/.env
|
|
**/.env.*
|
|
**/*.pem
|
|
**/*.key
|
|
**/bin/
|
|
**/*.exe
|
|
**/*.exe~
|
|
**/*.dll
|
|
**/*.so
|
|
**/*.dylib
|
|
**/*.test
|
|
**/*.out
|
|
/data/
|
|
|
|
# Git never applies its ignore patterns inside .git; send all of it again.
|
|
!.git/**
|
|
|
|
# .git is sent without its config, because a remote URL there can carry a
|
|
# credential; `git describe` does not need it. Keep this after !.git/**.
|
|
.git/config
|