Files
k_deploy_workflows/.gitea/workflows/validate.yaml
T
renovate-bot 2aecdb373d
Release / Release (push) Successful in 11s
chore(deps): update azure/k8s-lint action to v4 (#54)
This PR contains the following updates:

| Package | Type | Update | Change |
|---|---|---|---|
| [azure/k8s-lint](https://github.com/azure/k8s-lint) | action | major | `v3.0.1` → `v4.0.0` |

---

### Release Notes

<details>
<summary>azure/k8s-lint (azure/k8s-lint)</summary>

### [`v4.0.0`](https://github.com/Azure/k8s-lint/releases/tag/v4.0.0)

[Compare Source](https://github.com/azure/k8s-lint/compare/v3.0.1...v4.0.0)

##### Changed

- [#&#8203;189](https://github.com/azure/k8s-lint/issues/189) [Update Node.js runtime from node20 to node24](https://github.com/Azure/k8s-lint/pull/189)
- [#&#8203;198](https://github.com/azure/k8s-lint/issues/198) [build: migrate action to ESM with esbuild and Vitest](https://github.com/Azure/k8s-lint/pull/198)
- **Dependabot - GitHub Actions workflow updates:** bumps to `github/codeql-action`, `actions/setup-node`, and other workflow actions in [#&#8203;145](https://github.com/azure/k8s-lint/issues/145), [#&#8203;147](https://github.com/azure/k8s-lint/issues/147), [#&#8203;148](https://github.com/azure/k8s-lint/issues/148), [#&#8203;150](https://github.com/azure/k8s-lint/issues/150), [#&#8203;152](https://github.com/azure/k8s-lint/issues/152), [#&#8203;156](https://github.com/azure/k8s-lint/issues/156), [#&#8203;158](https://github.com/azure/k8s-lint/issues/158), [#&#8203;160](https://github.com/azure/k8s-lint/issues/160), [#&#8203;167](https://github.com/azure/k8s-lint/issues/167), [#&#8203;169](https://github.com/azure/k8s-lint/issues/169), [#&#8203;171](https://github.com/azure/k8s-lint/issues/171), [#&#8203;173](https://github.com/azure/k8s-lint/issues/173), [#&#8203;175](https://github.com/azure/k8s-lint/issues/175), [#&#8203;177](https://github.com/azure/k8s-lint/issues/177), [#&#8203;179](https://github.com/azure/k8s-lint/issues/179), [#&#8203;181](https://github.com/azure/k8s-lint/issues/181), [#&#8203;183](https://github.com/azure/k8s-lint/issues/183), [#&#8203;185](https://github.com/azure/k8s-lint/issues/185), [#&#8203;187](https://github.com/azure/k8s-lint/issues/187), [#&#8203;188](https://github.com/azure/k8s-lint/issues/188), [#&#8203;193](https://github.com/azure/k8s-lint/issues/193), [#&#8203;197](https://github.com/azure/k8s-lint/issues/197)
- **Dependabot - npm dependency updates:** `@types/node` ([#&#8203;144](https://github.com/azure/k8s-lint/issues/144), [#&#8203;146](https://github.com/azure/k8s-lint/issues/146), [#&#8203;159](https://github.com/azure/k8s-lint/issues/159), [#&#8203;166](https://github.com/azure/k8s-lint/issues/166), [#&#8203;174](https://github.com/azure/k8s-lint/issues/174)), `undici` / `@actions/http-client` ([#&#8203;184](https://github.com/azure/k8s-lint/issues/184), [#&#8203;191](https://github.com/azure/k8s-lint/issues/191)), `jest` ([#&#8203;149](https://github.com/azure/k8s-lint/issues/149)), `handlebars` ([#&#8203;196](https://github.com/azure/k8s-lint/issues/196)), `picomatch` ([#&#8203;195](https://github.com/azure/k8s-lint/issues/195)), `minimatch` ([#&#8203;186](https://github.com/azure/k8s-lint/issues/186)), `js-yaml` ([#&#8203;163](https://github.com/azure/k8s-lint/issues/163)), `glob` ([#&#8203;165](https://github.com/azure/k8s-lint/issues/165)), and grouped npm `actions` updates in [#&#8203;151](https://github.com/azure/k8s-lint/issues/151), [#&#8203;155](https://github.com/azure/k8s-lint/issues/155), [#&#8203;157](https://github.com/azure/k8s-lint/issues/157), [#&#8203;164](https://github.com/azure/k8s-lint/issues/164), [#&#8203;168](https://github.com/azure/k8s-lint/issues/168), [#&#8203;170](https://github.com/azure/k8s-lint/issues/170), [#&#8203;172](https://github.com/azure/k8s-lint/issues/172), [#&#8203;176](https://github.com/azure/k8s-lint/issues/176), [#&#8203;178](https://github.com/azure/k8s-lint/issues/178)

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update again.

---

 - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box

---

This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41LjQiLCJ1cGRhdGVkSW5WZXIiOiI0My41LjQiLCJ0YXJnZXRCcmFuY2giOiJtYWluIiwibGFiZWxzIjpbImFjdGlvbiIsImRlcHMiXX0=-->

Reviewed-on: https://gitea.t000-n.de/t.behrendt/k_deploy_workflows/pulls/54
Reviewed-by: t.behrendt <t.behrendt@noreply.localhost>
Co-authored-by: Renovate Bot <renovate@t00n.de>
Co-committed-by: Renovate Bot <renovate@t00n.de>
2026-05-13 22:35:43 +02:00

130 lines
5.1 KiB
YAML

name: CI
on:
workflow_call:
inputs:
k8s_dir:
description: "Path to Kubernetes manifests directory"
required: false
default: "k8s/"
type: string
helmfile_path:
description: "Path to helmfile.yaml"
required: false
default: "helmfile.yaml"
type: string
skip_helm_validation:
description: "Skip Helm validation even if helmfile.yaml exists"
required: false
default: false
type: boolean
helmfile_env:
description: "Optional JSON object string of environment variables for Helmfile"
required: false
default: "{}"
type: string
jobs:
detect-service-type:
runs-on: ubuntu-latest
outputs:
has_helmfile: ${{ steps.check-helmfile.outputs.exists }}
has_k8s: ${{ steps.check-k8s.outputs.exists }}
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- name: Check if helmfile.yaml exists
id: check-helmfile
run: |
if [ -f "${{ inputs.helmfile_path }}" ]; then
echo "exists=true" >> $GITHUB_OUTPUT
echo "Found helmfile.yaml at ${{ inputs.helmfile_path }}"
else
echo "exists=false" >> $GITHUB_OUTPUT
echo "No helmfile.yaml found at ${{ inputs.helmfile_path }}"
fi
- name: Check if k8s directory exists
id: check-k8s
run: |
if [ -d "${{ inputs.k8s_dir }}" ]; then
echo "exists=true" >> $GITHUB_OUTPUT
echo "Found k8s directory at ${{ inputs.k8s_dir }}"
else
echo "exists=false" >> $GITHUB_OUTPUT
echo "No k8s directory found at ${{ inputs.k8s_dir }}"
fi
validate-k8s:
runs-on: ubuntu-latest
needs: detect-service-type
if: needs.detect-service-type.outputs.has_k8s == 'true'
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- uses: https://gitea.t000-n.de/t.behrendt/k_deploy_actions/.gitea/actions/extract-namespace-from-repo-name@0.0.1
id: namespace
with:
repo: ${{ github.repository }}
- uses: azure/setup-kubectl@829323503d1be3d00ca8346e5391ca0b07a9ab0d # v5.1.0
- uses: azure/k8s-set-context@89b837d75b40a7bd2ddafde837473c212db8b313 # v5.0.0
with:
method: kubeconfig
kubeconfig: ${{ secrets.KUBECONFIG }}
- name: Validate k8s manifests
uses: azure/k8s-lint@e4234c50ea835112e72b145bdecd00a94bad42fd # v4.0.0
with:
namespace: ${{ steps.namespace.outputs.namespace }}
lintType: dryrun
manifests: "${{ inputs.k8s_dir }}"
validate-helm:
runs-on: ubuntu-latest
needs: detect-service-type
if: |
needs.detect-service-type.outputs.has_helmfile == 'true' &&
needs.detect-service-type.outputs.has_k8s == 'true' &&
inputs.skip_helm_validation != 'true'
steps:
- uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2
- uses: https://gitea.t000-n.de/t.behrendt/k_deploy_actions/.gitea/actions/extract-namespace-from-repo-name@0.0.1
id: namespace
with:
repo: ${{ github.repository }}
- uses: azure/setup-kubectl@829323503d1be3d00ca8346e5391ca0b07a9ab0d # v5.1.0
- uses: azure/setup-helm@dda3372f752e03dde6b3237bc9431cdc2f7a02a2 # v5
- uses: azure/k8s-set-context@89b837d75b40a7bd2ddafde837473c212db8b313 # v5.0.0
with:
method: kubeconfig
kubeconfig: ${{ secrets.KUBECONFIG }}
- name: Validate Helm
uses: helmfile/helmfile-action@02671705b1dda1dc4b0a4ddd4f9f1ea8f4568c6f # v2.4.3
with:
helmfile-args: diff
env: ${{ fromJSON(inputs.helmfile_env) }}
# Summary job that always runs to show what was validated
ci-summary:
runs-on: ubuntu-latest
needs: [detect-service-type, validate-k8s, validate-helm]
if: always()
steps:
- name: CI Summary
run: |
echo "## CI Validation Summary" >> $GITHUB_STEP_SUMMARY
echo "" >> $GITHUB_STEP_SUMMARY
if [ "${{ needs.detect-service-type.outputs.has_k8s }}" == "true" ]; then
echo "✅ **Kubernetes validation**: Completed" >> $GITHUB_STEP_SUMMARY
else
echo "❌ **Kubernetes validation**: Skipped (no k8s/ directory found)" >> $GITHUB_STEP_SUMMARY
fi
if [ "${{ needs.detect-service-type.outputs.has_helmfile }}" == "true" ] && [ "${{ inputs.skip_helm_validation }}" != "true" ]; then
echo "✅ **Helm validation**: Completed" >> $GITHUB_STEP_SUMMARY
elif [ "${{ needs.detect-service-type.outputs.has_helmfile }}" == "true" ] && [ "${{ inputs.skip_helm_validation }}" == "true" ]; then
echo "⏭️ **Helm validation**: Skipped (manually disabled)" >> $GITHUB_STEP_SUMMARY
else
echo "⏭️ **Helm validation**: Skipped (no helmfile.yaml found)" >> $GITHUB_STEP_SUMMARY
fi
echo "" >> $GITHUB_STEP_SUMMARY
echo "**Service Type**: ${{ needs.detect-service-type.outputs.has_helmfile == 'true' && 'Helm + Kubernetes' || 'Kubernetes Only' }}" >> $GITHUB_STEP_SUMMARY