Skip to content
Closed
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
28 changes: 24 additions & 4 deletions .github/workflows/ci.yml
Original file line number Diff line number Diff line change
Expand Up @@ -13,7 +13,6 @@ concurrency:
jobs:
test:
runs-on: ubuntu-latest

steps:
- uses: actions/checkout@v5

Expand All @@ -23,7 +22,28 @@ jobs:
bun-version: "1.x"

- name: Install dependencies
run: bun install --frozen-lockfile
run: |
if [ -f bun.lock ]; then
bun install --frozen-lockfile
else
bun install
fi

- name: Check lockfiles are in sync
run: |
echo "Checking that package-lock.json is in sync with package.json (bun.lock is canonical)..."
if [ -f package-lock.json ]; then
cp package-lock.json package-lock.json.orig
npm install --package-lock-only --ignore-scripts
if ! diff -q package-lock.json package-lock.json.orig >/dev/null 2>&1; then
echo "::error::package-lock.json is out of sync with package.json. Run 'npm install' locally after any 'bun add / bun update' and commit the updated lockfile."
diff -u package-lock.json.orig package-lock.json | head -n 200 || true
mv package-lock.json.orig package-lock.json
exit 1
fi
echo "package-lock.json is in sync."
rm package-lock.json.orig
fi

- name: Check for insecure TLS configuration
run: |
Expand Down Expand Up @@ -58,7 +78,7 @@ jobs:
steps:
- uses: actions/checkout@v5

- name: Initialize CodeQL
- name: Initialize CodeQL
uses: github/codeql-action/init@v3
with:
languages: javascript
Expand All @@ -67,4 +87,4 @@ jobs:
- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v3
with:
fail-on: high
fail-on: high
Loading
Loading