mirror of
https://github.com/abhigyanpatwari/GitNexus.git
synced 2026-10-01 02:01:24 +00:00
Some checks are pending
CodeQL / Analyze (python) (push) Waiting to run
Publish / RC guard (marker + release-PR skip) (push) Blocked by required conditions
Trivy Image Scan / Trivy (gitnexus-web) (push) Waiting to run
CodeQL / Analyze (javascript-typescript) (push) Waiting to run
Gitleaks / gitleaks (push) Waiting to run
Publish / Classify release event (push) Waiting to run
Publish / ci (push) Blocked by required conditions
Publish / Publish to npm (push) Blocked by required conditions
Publish / Build & Push RC Docker images (push) Blocked by required conditions
Scorecard / Scorecard analysis (push) Waiting to run
Trivy Image Scan / Trivy (gitnexus-cli) (push) Waiting to run
* fix(web): drop TypeScript 7-incompatible tsconfig paths Remove baseUrl and the dead ../shared include so web project references typecheck under TypeScript 7. Co-authored-by: Cursor <cursoragent@cursor.com> * test(cli): parse TypeScript with a TypeScript 6 API package Keep AST guards working after the named typescript package becomes 7, which no longer ships the Compiler API. Co-authored-by: Cursor <cursoragent@cursor.com> * chore(lint): pin root TypeScript to the 6 API package Give typescript-eslint a TypeScript 6 peer so syntax-only lint still installs after CLI and web move to TypeScript 7. Co-authored-by: Cursor <cursoragent@cursor.com> * chore(deps): compile first-party packages with TypeScript 7.0.2 Unify CLI and web on the same native compiler line as gitnexus-shared so typecheck and emit no longer split 5.x versus 7.x. Co-authored-by: Cursor <cursoragent@cursor.com> * docs(ci): describe parent TypeScript 7 as the shared compiler Stop saying web compiles shared with TypeScript 5 now that the parent lockfile is 7. Co-authored-by: Cursor <cursoragent@cursor.com> * fix(ci): compile shared from parent TypeScript on Vercel and skill-evolution Stop isolated npm installs in gitnexus-shared so those paths do not pull a second TypeScript 7 optional-platform tree. Co-authored-by: Cursor <cursoragent@cursor.com> * docs: record TypeScript 7 typecheck and Dependabot major-split policy Keep contributor typecheck commands, and stop Dependabot from bumping shared onto a different TypeScript major than CLI and web. Co-authored-by: Cursor <cursoragent@cursor.com> * fix(lint): pin root TypeScript to 5.9 so npm ci satisfies eslint peers typescript-eslint 8 peers typescript below 6.0.0, so the typescript6 alias made quality lint npm ci fail with ERESOLVE. Co-authored-by: Cursor <cursoragent@cursor.com> * test(cli): drop the TypeScript 6 Compiler API package TypeScript 7.0 has no classic createProgram surface, so parse-only guards now use Babel and Mode 4 uses the TypeScript 7 Checker. Co-authored-by: Cursor <cursoragent@cursor.com> * docs: align contributor setup with parent TypeScript 7 compile Stop telling clones to npm-install gitnexus-shared; CI and Vercel already emit that package from a parent lib/tsc.js shim. Co-authored-by: Cursor <cursoragent@cursor.com> * fix(web): typecheck React JSX on TypeScript 7 with explicit DOM libs TypeScript 7 no longer implies DOM or auto-includes @types, so the web app must declare React/JSX settings while Vite keeps plugin-react. Co-authored-by: Cursor <cursoragent@cursor.com> * test: pin Vercel --include=dev and share parse-only string helpers Production npm ci omits the web TypeScript unless --include=dev is on that install. Move staticStringValue next to the other Babel walk helpers so CLI help and contract tests share one source. Co-authored-by: Cursor <cursoragent@cursor.com> * chore(autofix): apply prettier + eslint fixes via /autofix command --------- Co-authored-by: Gergo Magyar <gergomagyar0@gmail.com> Co-authored-by: Cursor <cursoragent@cursor.com> Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
143 lines
4.1 KiB
YAML
143 lines
4.1 KiB
YAML
version: 2
|
|
updates:
|
|
# Keep third-party Actions SHA pins current. See CONTRIBUTING.md — when
|
|
# reviewing these bumps, verify the SHA corresponds to the claimed tag by
|
|
# running `gh api repos/<owner>/<action>/git/refs/tags/<tag>` before merge.
|
|
- package-ecosystem: github-actions
|
|
directory: /
|
|
schedule:
|
|
interval: weekly
|
|
cooldown:
|
|
default-days: 7
|
|
open-pull-requests-limit: 5
|
|
commit-message:
|
|
prefix: chore
|
|
include: scope
|
|
labels:
|
|
- dependencies
|
|
- ci
|
|
groups:
|
|
codeql-action:
|
|
patterns:
|
|
- github/codeql-action/*
|
|
|
|
# Keep pinned Docker base-image digests current for the root Dockerfiles.
|
|
- package-ecosystem: docker
|
|
directory: /
|
|
schedule:
|
|
interval: weekly
|
|
cooldown:
|
|
default-days: 7
|
|
open-pull-requests-limit: 5
|
|
commit-message:
|
|
prefix: chore(deps)
|
|
include: scope
|
|
labels:
|
|
- dependencies
|
|
- ci
|
|
|
|
# Keep the nested test-image Docker base digest current as well.
|
|
- package-ecosystem: docker
|
|
directory: /gitnexus
|
|
schedule:
|
|
interval: weekly
|
|
cooldown:
|
|
default-days: 7
|
|
open-pull-requests-limit: 5
|
|
commit-message:
|
|
prefix: chore(deps)
|
|
include: scope
|
|
labels:
|
|
- dependencies
|
|
- ci
|
|
|
|
# Gitnexus npm deps — tree-sitter grammars checked daily so we catch
|
|
# new releases that unblock the tree-sitter 0.25 upgrade ASAP. Grammars
|
|
# are grouped so lockstep bumps produce a single PR. The tree-sitter
|
|
# RUNTIME is pinned — upgrade deliberately via the drift check workflow.
|
|
# See .github/scripts/check-tree-sitter-upgrade-readiness.py for
|
|
# the upgrade readiness tracker.
|
|
- package-ecosystem: npm
|
|
directory: /gitnexus
|
|
schedule:
|
|
interval: daily
|
|
cooldown:
|
|
default-days: 7
|
|
semver-major-days: 30
|
|
semver-minor-days: 7
|
|
semver-patch-days: 3
|
|
open-pull-requests-limit: 10
|
|
commit-message:
|
|
prefix: chore(deps)
|
|
include: scope
|
|
labels:
|
|
- dependencies
|
|
groups:
|
|
tree-sitter-grammars:
|
|
patterns:
|
|
- tree-sitter-*
|
|
exclude-patterns:
|
|
- tree-sitter
|
|
- tree-sitter-cli
|
|
ignore:
|
|
# Pin the tree-sitter runtime at 0.21.x until the drift check
|
|
# reports all grammars are peer-dep compatible with 0.25.
|
|
- dependency-name: tree-sitter
|
|
update-types:
|
|
- version-update:semver-major
|
|
- version-update:semver-minor
|
|
# tree-sitter-cli follows the runtime's version cadence. Bump when
|
|
# regenerating vendor/tree-sitter-proto/src/parser.c, not on a schedule.
|
|
- dependency-name: tree-sitter-cli
|
|
# Pin @ladybugdb/core so a daily bump cannot ship a skewed FTS artifact.
|
|
# The extension version is a separate upstream constant, not derivable
|
|
# from the core version (see vendor/lbug-fts/manifest.json).
|
|
- dependency-name: '@ladybugdb/core'
|
|
- dependency-name: typescript
|
|
update-types:
|
|
- version-update:semver-major
|
|
|
|
# gitnexus-web (thin frontend client).
|
|
- package-ecosystem: npm
|
|
directory: /gitnexus-web
|
|
schedule:
|
|
interval: weekly
|
|
cooldown:
|
|
default-days: 7
|
|
semver-major-days: 30
|
|
semver-minor-days: 7
|
|
semver-patch-days: 3
|
|
open-pull-requests-limit: 5
|
|
commit-message:
|
|
prefix: chore(deps)
|
|
include: scope
|
|
labels:
|
|
- dependencies
|
|
- frontend
|
|
ignore:
|
|
- dependency-name: typescript
|
|
update-types:
|
|
- version-update:semver-major
|
|
|
|
# Shared types package.
|
|
- package-ecosystem: npm
|
|
directory: /gitnexus-shared
|
|
schedule:
|
|
interval: weekly
|
|
cooldown:
|
|
default-days: 7
|
|
semver-major-days: 30
|
|
semver-minor-days: 7
|
|
semver-patch-days: 3
|
|
open-pull-requests-limit: 5
|
|
commit-message:
|
|
prefix: chore(deps)
|
|
include: scope
|
|
labels:
|
|
- dependencies
|
|
ignore:
|
|
# Keep shared on the same TypeScript major as CLI/web. A shared-only
|
|
# major bump reintroduces a compiler split this repo unified.
|
|
- dependency-name: typescript
|
|
update-types:
|
|
- version-update:semver-major
|