-
Notifications
You must be signed in to change notification settings - Fork 5
135 lines (111 loc) · 3.09 KB
/
Copy pathci.yml
File metadata and controls
135 lines (111 loc) · 3.09 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
---
name: CI
"on":
push:
branches: [main]
pull_request:
branches: [main]
concurrency:
group: ${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
permissions:
contents: read
env:
PYTHON_VERSION: "3.11"
jobs:
validate:
name: Validate Plugin
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- name: Validate plugin structure
run: |
echo "Checking plugin manifest..."
test -f .claude-plugin/plugin.json || exit 1
echo "Plugin manifest exists"
echo "Checking command frontmatter..."
for cmd in commands/*.md; do
grep -q "^---" "$cmd" || exit 1
done
echo "Commands have frontmatter"
echo "Checking skill frontmatter..."
for skill in skills/*/SKILL.md; do
grep -q "^---" "$skill" || exit 1
done
echo "Skills have frontmatter"
lint:
name: Lint
runs-on: ubuntu-latest
needs: validate
steps:
- uses: actions/checkout@v4
- name: Set up Python
uses: actions/setup-python@v5
with:
python-version: ${{ env.PYTHON_VERSION }}
- name: Install dependencies
run: |
python -m pip install --upgrade pip
pip install ruff
- name: Lint Python files
run: ruff check hooks/
format:
name: Format Check
runs-on: ubuntu-latest
needs: validate
steps:
- uses: actions/checkout@v4
- name: Set up Python
uses: actions/setup-python@v5
with:
python-version: ${{ env.PYTHON_VERSION }}
- name: Install dependencies
run: |
python -m pip install --upgrade pip
pip install ruff
- name: Check formatting
run: ruff format --check hooks/
test:
name: Test
runs-on: ubuntu-latest
needs: [lint, format]
steps:
- uses: actions/checkout@v4
- name: Set up Python
uses: actions/setup-python@v5
with:
python-version: ${{ env.PYTHON_VERSION }}
- name: Install dependencies
run: |
python -m pip install --upgrade pip
pip install pytest
- name: Run tests
run: |
if [ -d "tests" ]; then
pytest tests/ -v || echo "No tests found"
else
echo "No tests directory, skipping"
fi
- name: Validate hooks execute
run: |
for hook in hooks/*.py; do
echo "Checking $hook syntax..."
python -m py_compile "$hook"
done
echo "All hooks have valid syntax"
security:
name: Security Audit
runs-on: ubuntu-latest
needs: test
steps:
- uses: actions/checkout@v4
- name: Set up Python
uses: actions/setup-python@v5
with:
python-version: ${{ env.PYTHON_VERSION }}
- name: Check for secrets
run: |
echo "Checking for hardcoded secrets..."
grep -rn "password\s*=\s*['\"]" hooks/ || true
grep -rn "api_key\s*=\s*['\"]" hooks/ || true
echo "Secret check complete"