name: Gitea Branch PR, SonarQube Analyze, and Merge Workflow on: push: branches-ignore: - main jobs: # Job 1: Check if PR exists and create one if the branch is new check-and-create-pr: name: Check and Create PR runs-on: ubuntu-latest steps: - name: Checkout Code uses: actions/checkout@v4 - name: PR list id: list-prs run: | pr_check=$(curl ${{ vars.RINOA_GITEA_URL }}/api/v1/repos/${{ github.repository }}/pulls/main/${{ github.ref_name }} \ -X 'GET' \ -H 'Accept: application/json' \ -H 'Authorization: token ${{ secrets.BOT_GITEA_TOKEN }}' \ -s | jq '{index: .number, state: .state}') pr_state=$(echo ${pr_check} | jq -r '.state') - name: Create PR if: steps.list-prs.outputs.pr_state != 'open' uses: arifer612/Gitea-PR-action@v1.2.0 with: url: ${{ gitea.server_url }} token: ${{ secrets.BOT_GITEA_TOKEN }} assignee: ${{ gitea.actor }} cloudflare-dns-setup: name: Cloudflare DNS Setup needs: [check-and-create-pr] runs-on: ubuntu-latest steps: - name: Checkout uses: actions/checkout@v4 - name: Cache flarectl and Go dependencies uses: actions/cache@v4 with: path: | $HOME/.cache/go-build $HOME/.config/go/env $HOME/go/pkg/mod/cache/ key: ${{ runner.os }}-go-${{ steps.setup-go-faster.outputs.GOROOT }} restore-keys: | ${{ runner.os }}-go-${{ steps.setup-go-faster.outputs.GOROOT }} - name: Setup yq uses: dcarbone/install-yq-action@v1 - name: Setup Go id: setup-go-faster uses: WillAbides/setup-go-faster@v1.14.0 with: go-version: 'stable' - name: Setup jq uses: dcarbone/install-jq-action@v3.0.1 - name: Retrieve Subdomains from Cloudflare id: retrieve-cloudflare-subdomains env: CF_API_TOKEN: ${{ secrets.CF_API_TOKEN }} CF_API_EMAIL: ${{ secrets.CF_API_EMAIL }} run: | # Check if flarectl exists; install if not cached if ! command -v flarectl &> /dev/null; then echo "flarectl not found, installing..." go env ${{ github.workspace }} go install github.com/cloudflare/cloudflare-go/cmd/flarectl@latest else echo "flarectl found in cache." fi flarectl --json dns list --zone "trez.wtf" --type=CNAME --content "trez.wtf" | jq jq '.[].Name' | sed -e 's|"||g' | awk -F"." '{print $1}' | sort > cloudflare_subdomains.txt - name: Grab subdomains from Compose id: compose-domains env: CF_API_KEY: ${{ secrets.CF_API_TOKEN }} CF_API_EMAIL: ${{ secrets.CF_API_EMAIL }} run: | yq '.services[].labels.swag_url' docker-compose.yml | egrep -v 'null' | sed -e 's|"||g' | awk -F'.' '{print $1}' | sort > compose_subdomains.txt - name: Compare Subdomains id: compare-subdomains uses: LouisBrunner/diff-action@v2.2.0 with: old: cloudflare_subdomains.txt new: compose_subdomains.txt output: missing_subdomains.txt - name: Add missing subdomains to Cloudflare if: steps.compare-subdomains.outputs.output != '' env: DOCKER_HOST: tcp://dockerproxy:2375 CF_API_KEY: ${{ secrets.CF_API_TOKEN }} CF_API_EMAIL: ${{ secrets.CF_API_EMAIL }} run: | for subdomain in $(cat missing_subdomains.txt); do echo "Adding ${subdomain} to Cloudflare..." flarectl dns creeate --zone ${{ secrets.CF_ZONE_ID }} --type CNAME --name "${subdomain}" --content "trez.wtf" --proxy true done docker-compose-test: name: Docker Compose Test needs: [create-pr] runs-on: ubuntu-latest steps: - name: Checkout uses: actions/checkout@v4 - name: Generate ephemeral .env compose file id: generate-env-file-pr run: | echo "${{ secrets.RINOA_ENV }}" > .env - name: Docker Compose Lint uses: yu-ichiro/spin-up-docker-compose-action@v1 with: file: docker-compose.yml pull: true pull-opts: --dry-run up: true up-opts: --dry-run -d --remove-orphans env: DOCKER_HOST: tcp://dockerproxy:2375 merge-pr: name: PR Merge runs-on: ubuntu-latest needs: [docker-compose-test] steps: - name: Checkout uses: actions/checkout@v4 - name: Send Gotify Notification uses: eikendev/gotify-action@0.0.3 with: gotify_api_base: '${{ secrets.GOTIFY_URL }}' gotify_app_token: '${{ secrets.GOTIFY_TOKEN }}' notification_title: '${{ github.ref_name }} ready to be merged.' notification_message: '${{ gitea.server_url }}/issues' # - name: Manual Approval # uses: trstringer/manual-approval@v1 # with: # secret: ${{ secrets.BOT_GITEA_TOKEN }} # approvers: Trez.One # minimum-approvals: 1 # issue-title: "Deployment of ${{ github.ref_name }}" # issue-body: "Autobots, roll out!" # exclude-workflow-initiator-as-approver: false # additional-approved-words: '' # additional-denied-words: '' # - name: Tea CLI Setup & PR Merge # run: | # curl -sSL https://dl.gitea.com/tea/main/tea-main-linux-amd64 -o /usr/local/bin/tea # chmod +x /usr/local/bin/tea # echo "Merging PR..." # tea login add --name gitea-rinoa --url ${{ vars.RINOA_GITEA_URL }} --user gitea-sonarqube-bot --password "${{ secrets.BOT_GITEA_PASSWORD }}" --token ${{ secrets.BOT_GITEA_TOKEN }} # echo ${{ gitea.ref_name }} # pr_index=$(tea pr ls --repo ${{ github.repository }} --state open --fields index,title,head,state --output csv | egrep ${{ gitea.ref_name }} | awk -F, '{print $1}' | sed -e 's|"||g') # tea pr m --repo ${{ github.repository }} --title "Auto Merge" --message "Merged by ${{ gitea.actor }}" --output table ${pr_index}