mirror of
				https://github.com/actions/checkout.git
				synced 2025-10-26 15:43:59 +08:00 
			
		
		
		
	Compare commits
	
		
			56 Commits
		
	
	
		
			takost/tes
			...
			users/eric
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
|   | cb17bfb94d | ||
|   | ff7abcd0c3 | ||
|   | 08c6903cd8 | ||
|   | 9f265659d3 | ||
|   | 08eba0b27e | ||
|   | 631c7dc4f8 | ||
|   | 8edcb1bdb4 | ||
|   | 09d2acae67 | ||
|   | 85e6279cec | ||
|   | 009b9ae9e4 | ||
|   | cbb722410c | ||
|   | 3b9b8c884f | ||
|   | 11bd71901b | ||
|   | e3d2460bbb | ||
|   | 163217dfcd | ||
|   | eef61447b9 | ||
|   | 6b42224f41 | ||
|   | de5a000abf | ||
|   | d632683dd7 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 6d193bf280 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | db0cee9a51 | ||
|   | b684943689 | ||
|   | 2d7d9f7ff5 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 9a9194f871 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | dd960bd3c3 | ||
|   | 692973e3d9 | ||
|   | 6ccd57f4c5 | ||
|   | b17fe1e4d5 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | b80ff79f17 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | b1ec3021b8 | ||
|   | a5ac7e51b4 | ||
|   | 24ed1a3528 | ||
|   | 44c2b7a8a4 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 8459bc0c7e | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 3f603f6d5e | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | fd084cde18 | ||
|   | 9c1e94e0ad | ||
|   | 0ad4b8fada | ||
|   | 43045ae669 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 37b082107b | ||
|   | 9839dc14a0 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 9b4c13b0bf | ||
|   | 1d96c772d1 | ||
|   | cd7d8d697e | ||
|   | 8410ad0602 | ||
|   | 9bb56186c3 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 8eb1f6a495 | ||
| ![dependabot[bot]](/assets/img/avatar_default.png)  | 556e4c3cb0 | ||
|   | b32f140b0c | ||
|   | 2650dbd060 | ||
|   | aadec89964 | ||
|   | df0bcddf6d | ||
|   | 473055ba18 | ||
|   | b4ffde65f4 | ||
|   | 8530928916 | ||
|   | 7cdaf2fbc0 | 
							
								
								
									
										20
									
								
								.github/dependabot.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						
									
										20
									
								
								.github/dependabot.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							| @@ -0,0 +1,20 @@ | |||||||
|  | --- | ||||||
|  | version: 2 | ||||||
|  |  | ||||||
|  | updates: | ||||||
|  | - package-ecosystem: "npm" | ||||||
|  |   directory: "/" | ||||||
|  |   schedule: | ||||||
|  |     interval: "weekly" | ||||||
|  |   groups: | ||||||
|  |     minor-npm-dependencies: | ||||||
|  |       # NPM: Only group minor and patch updates (we want to carefully review major updates) | ||||||
|  |       update-types: [minor, patch] | ||||||
|  | - package-ecosystem: "github-actions" | ||||||
|  |   directory: "/" | ||||||
|  |   schedule: | ||||||
|  |     interval: "weekly" | ||||||
|  |   groups: | ||||||
|  |     minor-actions-dependencies: | ||||||
|  |       # GitHub Actions: Only group minor and patch updates (we want to carefully review major updates) | ||||||
|  |       update-types: [minor, patch] | ||||||
							
								
								
									
										10
									
								
								.github/workflows/check-dist.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										10
									
								
								.github/workflows/check-dist.yml
									
									
									
									
										vendored
									
									
								
							| @@ -22,12 +22,12 @@ jobs: | |||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|  |  | ||||||
|     steps: |     steps: | ||||||
|       - uses: actions/checkout@v3 |       - uses: actions/checkout@v4.1.6 | ||||||
|  |  | ||||||
|       - name: Set Node.js 20.x |       - name: Set Node.js 24.x | ||||||
|         uses: actions/setup-node@v1 |         uses: actions/setup-node@v4 | ||||||
|         with: |         with: | ||||||
|           node-version: 20.x |           node-version: 24.x | ||||||
|  |  | ||||||
|       - name: Install dependencies |       - name: Install dependencies | ||||||
|         run: npm ci |         run: npm ci | ||||||
| @@ -44,7 +44,7 @@ jobs: | |||||||
|           fi |           fi | ||||||
|  |  | ||||||
|       # If dist/ was different than expected, upload the expected version as an artifact |       # If dist/ was different than expected, upload the expected version as an artifact | ||||||
|       - uses: actions/upload-artifact@v2 |       - uses: actions/upload-artifact@v4 | ||||||
|         if: ${{ failure() && steps.diff.conclusion == 'failure' }} |         if: ${{ failure() && steps.diff.conclusion == 'failure' }} | ||||||
|         with: |         with: | ||||||
|           name: dist |           name: dist | ||||||
|   | |||||||
							
								
								
									
										6
									
								
								.github/workflows/codeql-analysis.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										6
									
								
								.github/workflows/codeql-analysis.yml
									
									
									
									
										vendored
									
									
								
							| @@ -39,10 +39,10 @@ jobs: | |||||||
|  |  | ||||||
|     steps: |     steps: | ||||||
|     - name: Checkout repository |     - name: Checkout repository | ||||||
|       uses: actions/checkout@v3 |       uses: actions/checkout@v4.1.6 | ||||||
|  |  | ||||||
|     - name: Initialize CodeQL |     - name: Initialize CodeQL | ||||||
|       uses: github/codeql-action/init@v2 |       uses: github/codeql-action/init@v3 | ||||||
|       with: |       with: | ||||||
|         languages: ${{ matrix.language }} |         languages: ${{ matrix.language }} | ||||||
|         # If you wish to specify custom queries, you can do so here or in a config file. |         # If you wish to specify custom queries, you can do so here or in a config file. | ||||||
| @@ -55,4 +55,4 @@ jobs: | |||||||
|     - run: rm -rf dist # We want code scanning to analyze lib instead (individual .js files) |     - run: rm -rf dist # We want code scanning to analyze lib instead (individual .js files) | ||||||
|  |  | ||||||
|     - name: Perform CodeQL Analysis |     - name: Perform CodeQL Analysis | ||||||
|       uses: github/codeql-action/analyze@v2 |       uses: github/codeql-action/analyze@v3 | ||||||
|   | |||||||
							
								
								
									
										2
									
								
								.github/workflows/licensed.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										2
									
								
								.github/workflows/licensed.yml
									
									
									
									
										vendored
									
									
								
							| @@ -9,6 +9,6 @@ jobs: | |||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|     name: Check licenses |     name: Check licenses | ||||||
|     steps: |     steps: | ||||||
|       - uses: actions/checkout@v3 |       - uses: actions/checkout@v4.1.6 | ||||||
|       - run: npm ci |       - run: npm ci | ||||||
|       - run: npm run licensed-check |       - run: npm run licensed-check | ||||||
							
								
								
									
										20
									
								
								.github/workflows/publish-immutable-actions.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						
									
										20
									
								
								.github/workflows/publish-immutable-actions.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							| @@ -0,0 +1,20 @@ | |||||||
|  | name: 'Publish Immutable Action Version' | ||||||
|  |  | ||||||
|  | on: | ||||||
|  |   release: | ||||||
|  |     types: [published] | ||||||
|  |  | ||||||
|  | jobs: | ||||||
|  |   publish: | ||||||
|  |     runs-on: ubuntu-latest | ||||||
|  |     permissions: | ||||||
|  |       contents: read | ||||||
|  |       id-token: write | ||||||
|  |       packages: write | ||||||
|  |  | ||||||
|  |     steps: | ||||||
|  |       - name: Checking out | ||||||
|  |         uses: actions/checkout@v4 | ||||||
|  |       - name: Publish | ||||||
|  |         id: publish | ||||||
|  |         uses: actions/publish-immutable-action@0.0.3 | ||||||
							
								
								
									
										76
									
								
								.github/workflows/test.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										76
									
								
								.github/workflows/test.yml
									
									
									
									
										vendored
									
									
								
							| @@ -7,14 +7,19 @@ on: | |||||||
|       - main |       - main | ||||||
|       - releases/* |       - releases/* | ||||||
|  |  | ||||||
|  |  | ||||||
|  | # Note that when you see patterns like "ref: test-data/v2/basic" within this workflow, | ||||||
|  | # these refer to "test-data" branches on this actions/checkout repo. | ||||||
|  | # (For example, test-data/v2/basic -> https://github.com/actions/checkout/tree/test-data/v2/basic) | ||||||
|  |  | ||||||
| jobs: | jobs: | ||||||
|   build: |   build: | ||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|     steps: |     steps: | ||||||
|       - uses: actions/setup-node@v1 |       - uses: actions/setup-node@v4 | ||||||
|         with: |         with: | ||||||
|           node-version: 20.x |           node-version: 24.x | ||||||
|       - uses: actions/checkout@v3 |       - uses: actions/checkout@v4.1.6 | ||||||
|       - run: npm ci |       - run: npm ci | ||||||
|       - run: npm run build |       - run: npm run build | ||||||
|       - run: npm run format-check |       - run: npm run format-check | ||||||
| @@ -32,7 +37,7 @@ jobs: | |||||||
|     steps: |     steps: | ||||||
|       # Clone this repo |       # Clone this repo | ||||||
|       - name: Checkout |       - name: Checkout | ||||||
|         uses: actions/checkout@v3 |         uses: actions/checkout@v4.1.6 | ||||||
|  |  | ||||||
|       # Basic checkout |       # Basic checkout | ||||||
|       - name: Checkout basic |       - name: Checkout basic | ||||||
| @@ -95,6 +100,16 @@ jobs: | |||||||
|       - name: Verify sparse checkout |       - name: Verify sparse checkout | ||||||
|         run: __test__/verify-sparse-checkout.sh |         run: __test__/verify-sparse-checkout.sh | ||||||
|  |  | ||||||
|  |       # Disabled sparse checkout in existing checkout | ||||||
|  |       - name: Disabled sparse checkout | ||||||
|  |         uses: ./ | ||||||
|  |         with: | ||||||
|  |           path: sparse-checkout | ||||||
|  |  | ||||||
|  |       - name: Verify disabled sparse checkout | ||||||
|  |         shell: bash | ||||||
|  |         run: set -x && ls -l sparse-checkout/src/git-command-manager.ts | ||||||
|  |  | ||||||
|       # Sparse checkout (non-cone mode) |       # Sparse checkout (non-cone mode) | ||||||
|       - name: Sparse checkout (non-cone mode) |       - name: Sparse checkout (non-cone mode) | ||||||
|         uses: ./ |         uses: ./ | ||||||
| @@ -175,7 +190,7 @@ jobs: | |||||||
|   test-proxy: |   test-proxy: | ||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|     container: |     container: | ||||||
|       image: alpine/git:latest |       image: ghcr.io/actions/test-ubuntu-git:main.20240221.114913.703z | ||||||
|       options: --dns 127.0.0.1 |       options: --dns 127.0.0.1 | ||||||
|     services: |     services: | ||||||
|       squid-proxy: |       squid-proxy: | ||||||
| @@ -187,7 +202,7 @@ jobs: | |||||||
|     steps: |     steps: | ||||||
|       # Clone this repo |       # Clone this repo | ||||||
|       - name: Checkout |       - name: Checkout | ||||||
|         uses: actions/checkout@v3 |         uses: actions/checkout@v4.1.6 | ||||||
|  |  | ||||||
|       # Basic checkout using git |       # Basic checkout using git | ||||||
|       - name: Checkout basic |       - name: Checkout basic | ||||||
| @@ -219,7 +234,7 @@ jobs: | |||||||
|     steps: |     steps: | ||||||
|       # Clone this repo |       # Clone this repo | ||||||
|       - name: Checkout |       - name: Checkout | ||||||
|         uses: actions/checkout@v3 |         uses: actions/checkout@v4.1.6 | ||||||
|  |  | ||||||
|       # Basic checkout using git |       # Basic checkout using git | ||||||
|       - name: Checkout basic |       - name: Checkout basic | ||||||
| @@ -242,20 +257,20 @@ jobs: | |||||||
|           path: basic |           path: basic | ||||||
|       - name: Verify basic |       - name: Verify basic | ||||||
|         run: __test__/verify-basic.sh --archive |         run: __test__/verify-basic.sh --archive | ||||||
|      |  | ||||||
|   test-git-container: |   test-git-container: | ||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|     container: bitnami/git:latest |     container: bitnami/git:latest | ||||||
|     steps: |     steps: | ||||||
|       # Clone this repo |       # Clone this repo | ||||||
|       - name: Checkout |       - name: Checkout | ||||||
|         uses: actions/checkout@v3 |         uses: actions/checkout@v4.1.6 | ||||||
|         with: |         with: | ||||||
|           path: v3 |           path: localClone | ||||||
|  |  | ||||||
|       # Basic checkout using git |       # Basic checkout using git | ||||||
|       - name: Checkout basic |       - name: Checkout basic | ||||||
|         uses: ./v3 |         uses: ./localClone | ||||||
|         with: |         with: | ||||||
|           ref: test-data/v2/basic |           ref: test-data/v2/basic | ||||||
|       - name: Verify basic |       - name: Verify basic | ||||||
| @@ -276,7 +291,40 @@ jobs: | |||||||
|           git fetch --no-tags --depth=1 origin +refs/heads/main:refs/remotes/origin/main |           git fetch --no-tags --depth=1 origin +refs/heads/main:refs/remotes/origin/main | ||||||
|  |  | ||||||
|       # needed to make checkout post cleanup succeed |       # needed to make checkout post cleanup succeed | ||||||
|       - name: Fix Checkout v3 |       - name: Fix Checkout v4 | ||||||
|         uses: actions/checkout@v3 |         uses: actions/checkout@v4.1.6 | ||||||
|         with: |         with: | ||||||
|           path: v3 |           path: localClone | ||||||
|  |  | ||||||
|  |   test-output: | ||||||
|  |     runs-on: ubuntu-latest | ||||||
|  |     steps: | ||||||
|  |       # Clone this repo | ||||||
|  |       - name: Checkout | ||||||
|  |         uses: actions/checkout@v4.1.6 | ||||||
|  |         with: | ||||||
|  |           path: actions-checkout | ||||||
|  |  | ||||||
|  |       # Basic checkout using git | ||||||
|  |       - name: Checkout basic | ||||||
|  |         id: checkout | ||||||
|  |         uses: ./actions-checkout | ||||||
|  |         with: | ||||||
|  |           path: cloned-using-local-action | ||||||
|  |           ref: test-data/v2/basic | ||||||
|  |  | ||||||
|  |       # Verify output | ||||||
|  |       - name: Verify output | ||||||
|  |         run: | | ||||||
|  |           echo "Commit: ${{ steps.checkout.outputs.commit }}" | ||||||
|  |           echo "Ref: ${{ steps.checkout.outputs.ref }}" | ||||||
|  |  | ||||||
|  |           if [ "${{ steps.checkout.outputs.ref }}" != "test-data/v2/basic" ]; then | ||||||
|  |             echo "Expected ref to be test-data/v2/basic" | ||||||
|  |             exit 1 | ||||||
|  |           fi | ||||||
|  |  | ||||||
|  |           if [ "${{ steps.checkout.outputs.commit }}" != "82f71901cf8c021332310dcc8cdba84c4193ff5d" ]; then | ||||||
|  |             echo "Expected commit to be 82f71901cf8c021332310dcc8cdba84c4193ff5d" | ||||||
|  |             exit 1 | ||||||
|  |           fi | ||||||
|   | |||||||
							
								
								
									
										10
									
								
								.github/workflows/update-main-version.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										10
									
								
								.github/workflows/update-main-version.yml
									
									
									
									
										vendored
									
									
								
							| @@ -11,6 +11,7 @@ on: | |||||||
|         type: choice |         type: choice | ||||||
|         description: The major version to update |         description: The major version to update | ||||||
|         options: |         options: | ||||||
|  |           - v5 | ||||||
|           - v4 |           - v4 | ||||||
|           - v3 |           - v3 | ||||||
|           - v2 |           - v2 | ||||||
| @@ -19,13 +20,16 @@ jobs: | |||||||
|   tag: |   tag: | ||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|     steps: |     steps: | ||||||
|     - uses: actions/checkout@v3 |     # Note this update workflow can also be used as a rollback tool. | ||||||
|  |     # For that reason, it's best to pin `actions/checkout` to a known, stable version | ||||||
|  |     # (typically, about two releases back). | ||||||
|  |     - uses: actions/checkout@v4.1.6 | ||||||
|       with: |       with: | ||||||
|         fetch-depth: 0 |         fetch-depth: 0 | ||||||
|     - name: Git config |     - name: Git config | ||||||
|       run: | |       run: | | ||||||
|         git config user.name github-actions |         git config user.name "github-actions[bot]" | ||||||
|         git config user.email github-actions@github.com |         git config user.email "41898282+github-actions[bot]@users.noreply.github.com" | ||||||
|     - name: Tag new target |     - name: Tag new target | ||||||
|       run: git tag -f ${{ github.event.inputs.major_version }} ${{ github.event.inputs.target }} |       run: git tag -f ${{ github.event.inputs.major_version }} ${{ github.event.inputs.target }} | ||||||
|     - name: Push new tag |     - name: Push new tag | ||||||
|   | |||||||
							
								
								
									
										59
									
								
								.github/workflows/update-test-ubuntu-git.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						
									
										59
									
								
								.github/workflows/update-test-ubuntu-git.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							| @@ -0,0 +1,59 @@ | |||||||
|  | name: Publish test-ubuntu-git Container | ||||||
|  |  | ||||||
|  | on: | ||||||
|  |   # Use an on demand workflow trigger.   | ||||||
|  |   # (Forked copies of actions/checkout won't have permission to update GHCR.io/actions,  | ||||||
|  |   #  so avoid trigger events that run automatically.) | ||||||
|  |   workflow_dispatch: | ||||||
|  |     inputs: | ||||||
|  |       publish: | ||||||
|  |         description:  'Publish to ghcr.io? (main branch only)' | ||||||
|  |         type: boolean | ||||||
|  |         required: true | ||||||
|  |         default: false | ||||||
|  |  | ||||||
|  | env: | ||||||
|  |   REGISTRY: ghcr.io | ||||||
|  |   IMAGE_NAME: actions/test-ubuntu-git | ||||||
|  |  | ||||||
|  | jobs: | ||||||
|  |   build-and-push-image: | ||||||
|  |     runs-on: ubuntu-latest | ||||||
|  |     # Sets the permissions granted to the `GITHUB_TOKEN` for the actions in this job. | ||||||
|  |     permissions: | ||||||
|  |       contents: read | ||||||
|  |       packages: write | ||||||
|  |   | ||||||
|  |     steps: | ||||||
|  |       - name: Checkout repository | ||||||
|  |         uses: actions/checkout@v4 | ||||||
|  |  | ||||||
|  |       # Use `docker/login-action` to log in to GHCR.io.  | ||||||
|  |       # Once published, the packages are scoped to the account defined here. | ||||||
|  |       - name: Log in to the ghcr.io container registry | ||||||
|  |         uses: docker/login-action@v3.3.0 | ||||||
|  |         with: | ||||||
|  |           registry: ${{ env.REGISTRY }} | ||||||
|  |           username: ${{ github.actor }} | ||||||
|  |           password: ${{ secrets.GITHUB_TOKEN }} | ||||||
|  |  | ||||||
|  |       - name: Format Timestamp | ||||||
|  |         id: timestamp | ||||||
|  |         # Use `date` with a custom format to achieve the key=value format GITHUB_OUTPUT expects. | ||||||
|  |         run: date -u "+now=%Y%m%d.%H%M%S.%3NZ" >> "$GITHUB_OUTPUT" | ||||||
|  |  | ||||||
|  |       - name: Issue Image Publish Warning | ||||||
|  |         if:  ${{ inputs.publish && github.ref_name != 'main' }} | ||||||
|  |         run: echo "::warning::test-ubuntu-git images can only be published from the actions/checkout 'main' branch.  Workflow will continue with push/publish disabled." | ||||||
|  |  | ||||||
|  |       # Use `docker/build-push-action` to build (and optionally publish) the image.  | ||||||
|  |       - name: Build Docker Image (with optional Push) | ||||||
|  |         uses: docker/build-push-action@v6.5.0 | ||||||
|  |         with: | ||||||
|  |           context: . | ||||||
|  |           file: images/test-ubuntu-git.Dockerfile | ||||||
|  |           # For now, attempts to push to ghcr.io must target the `main` branch. | ||||||
|  |           # In the future, consider also allowing attempts from `releases/*` branches. | ||||||
|  |           push: ${{ inputs.publish && github.ref_name == 'main' }} | ||||||
|  |           tags: | | ||||||
|  |             ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}:${{ github.ref_name }}.${{ steps.timestamp.outputs.now }} | ||||||
							
								
								
									
										2
									
								
								.licenses/npm/@actions/github.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/@actions/github.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@actions/github" | name: "@actions/github" | ||||||
| version: 6.0.1 | version: 6.0.0 | ||||||
| type: npm | type: npm | ||||||
| summary: Actions github lib | summary: Actions github lib | ||||||
| homepage: https://github.com/actions/toolkit/tree/main/packages/github | homepage: https://github.com/actions/toolkit/tree/main/packages/github | ||||||
|   | |||||||
							
								
								
									
										32
									
								
								.licenses/npm/@actions/http-client-3.0.2.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										32
									
								
								.licenses/npm/@actions/http-client-3.0.2.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,32 +0,0 @@ | |||||||
| --- |  | ||||||
| name: "@actions/http-client" |  | ||||||
| version: 3.0.2 |  | ||||||
| type: npm |  | ||||||
| summary: Actions Http Client |  | ||||||
| homepage: https://github.com/actions/toolkit/tree/main/packages/http-client |  | ||||||
| license: other |  | ||||||
| licenses: |  | ||||||
| - sources: LICENSE |  | ||||||
|   text: | |  | ||||||
|     Actions Http Client for Node.js |  | ||||||
| 
 |  | ||||||
|     Copyright (c) GitHub, Inc. |  | ||||||
| 
 |  | ||||||
|     All rights reserved. |  | ||||||
| 
 |  | ||||||
|     MIT License |  | ||||||
| 
 |  | ||||||
|     Permission is hereby granted, free of charge, to any person obtaining a copy of this software and |  | ||||||
|     associated documentation files (the "Software"), to deal in the Software without restriction, |  | ||||||
|     including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, |  | ||||||
|     and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, |  | ||||||
|     subject to the following conditions: |  | ||||||
| 
 |  | ||||||
|     The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software. |  | ||||||
| 
 |  | ||||||
|     THE SOFTWARE IS PROVIDED *AS IS*, WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT |  | ||||||
|     LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN |  | ||||||
|     NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, |  | ||||||
|     WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE |  | ||||||
|     SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. |  | ||||||
| notices: [] |  | ||||||
| @@ -1,10 +1,10 @@ | |||||||
| --- | --- | ||||||
| name: "@actions/http-client" | name: "@actions/http-client" | ||||||
| version: 2.1.0 | version: 2.2.1 | ||||||
| type: npm | type: npm | ||||||
| summary: Actions Http Client | summary: Actions Http Client | ||||||
| homepage: https://github.com/actions/toolkit/tree/main/packages/http-client | homepage: https://github.com/actions/toolkit/tree/main/packages/http-client | ||||||
| license: other | license: mit | ||||||
| licenses: | licenses: | ||||||
| - sources: LICENSE | - sources: LICENSE | ||||||
|   text: | |   text: | | ||||||
							
								
								
									
										2
									
								
								.licenses/npm/@fastify/busboy.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/@fastify/busboy.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@fastify/busboy" | name: "@fastify/busboy" | ||||||
| version: 2.0.0 | version: 2.1.1 | ||||||
| type: npm | type: npm | ||||||
| summary: A streaming parser for HTML form data for node.js | summary: A streaming parser for HTML form data for node.js | ||||||
| homepage:  | homepage:  | ||||||
|   | |||||||
							
								
								
									
										2
									
								
								.licenses/npm/@octokit/auth-token.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/@octokit/auth-token.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/auth-token" | name: "@octokit/auth-token" | ||||||
| version: 3.0.4 | version: 4.0.0 | ||||||
| type: npm | type: npm | ||||||
| summary: GitHub API token authentication for browsers and Node.js | summary: GitHub API token authentication for browsers and Node.js | ||||||
| homepage:  | homepage:  | ||||||
|   | |||||||
							
								
								
									
										2
									
								
								.licenses/npm/@octokit/core.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/@octokit/core.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/core" | name: "@octokit/core" | ||||||
| version: 4.2.4 | version: 5.2.0 | ||||||
| type: npm | type: npm | ||||||
| summary: Extendable client for GitHub's REST & GraphQL APIs | summary: Extendable client for GitHub's REST & GraphQL APIs | ||||||
| homepage:  | homepage:  | ||||||
|   | |||||||
							
								
								
									
										4
									
								
								.licenses/npm/@octokit/endpoint.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										4
									
								
								.licenses/npm/@octokit/endpoint.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,9 +1,9 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/endpoint" | name: "@octokit/endpoint" | ||||||
| version: 7.0.6 | version: 9.0.6 | ||||||
| type: npm | type: npm | ||||||
| summary: Turns REST API endpoints into generic request options | summary: Turns REST API endpoints into generic request options | ||||||
| homepage:  | homepage: | ||||||
| license: mit | license: mit | ||||||
| licenses: | licenses: | ||||||
| - sources: LICENSE | - sources: LICENSE | ||||||
|   | |||||||
							
								
								
									
										2
									
								
								.licenses/npm/@octokit/graphql.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/@octokit/graphql.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/graphql" | name: "@octokit/graphql" | ||||||
| version: 5.0.6 | version: 7.1.0 | ||||||
| type: npm | type: npm | ||||||
| summary: GitHub GraphQL API client for browsers and Node | summary: GitHub GraphQL API client for browsers and Node | ||||||
| homepage:  | homepage:  | ||||||
|   | |||||||
| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/openapi-types" | name: "@octokit/openapi-types" | ||||||
| version: 18.1.1 | version: 20.0.0 | ||||||
| type: npm | type: npm | ||||||
| summary: Generated TypeScript definitions based on GitHub's OpenAPI spec for api.github.com | summary: Generated TypeScript definitions based on GitHub's OpenAPI spec for api.github.com | ||||||
| homepage:  | homepage:  | ||||||
| @@ -1,18 +1,18 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/tsconfig" | name: "@octokit/openapi-types" | ||||||
| version: 1.0.2 | version: 22.1.0 | ||||||
| type: npm | type: npm | ||||||
| summary: TypeScript configuration for Octokit packages | summary: Generated TypeScript definitions based on GitHub's OpenAPI spec for api.github.com | ||||||
| homepage:  | homepage:  | ||||||
| license: mit | license: mit | ||||||
| licenses: | licenses: | ||||||
| - sources: LICENSE | - sources: LICENSE | ||||||
|   text: | |   text: |- | ||||||
|     MIT License Copyright (c) 2020 Octokit contributors |     Copyright 2020 Gregor Martynus | ||||||
| 
 | 
 | ||||||
|     Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions: |     Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions: | ||||||
| 
 | 
 | ||||||
|     The above copyright notice and this permission notice (including the next paragraph) shall be included in all copies or substantial portions of the Software. |     The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software. | ||||||
| 
 | 
 | ||||||
|     THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. |     THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. | ||||||
| - sources: README.md | - sources: README.md | ||||||
| @@ -1,9 +1,9 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/plugin-paginate-rest" | name: "@octokit/plugin-paginate-rest" | ||||||
| version: 6.1.2 | version: 9.2.2 | ||||||
| type: npm | type: npm | ||||||
| summary: Octokit plugin to paginate REST API endpoint responses | summary: Octokit plugin to paginate REST API endpoint responses | ||||||
| homepage:  | homepage: | ||||||
| license: mit | license: mit | ||||||
| licenses: | licenses: | ||||||
| - sources: LICENSE | - sources: LICENSE | ||||||
|   | |||||||
| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/plugin-rest-endpoint-methods" | name: "@octokit/plugin-rest-endpoint-methods" | ||||||
| version: 7.2.3 | version: 10.4.1 | ||||||
| type: npm | type: npm | ||||||
| summary: Octokit plugin adding one method for all of api.github.com REST API endpoints | summary: Octokit plugin adding one method for all of api.github.com REST API endpoints | ||||||
| homepage:  | homepage:  | ||||||
|   | |||||||
							
								
								
									
										4
									
								
								.licenses/npm/@octokit/request-error.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										4
									
								
								.licenses/npm/@octokit/request-error.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,9 +1,9 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/request-error" | name: "@octokit/request-error" | ||||||
| version: 3.0.3 | version: 5.1.1 | ||||||
| type: npm | type: npm | ||||||
| summary: Error class for Octokit request errors | summary: Error class for Octokit request errors | ||||||
| homepage:  | homepage: | ||||||
| license: mit | license: mit | ||||||
| licenses: | licenses: | ||||||
| - sources: LICENSE | - sources: LICENSE | ||||||
|   | |||||||
							
								
								
									
										4
									
								
								.licenses/npm/@octokit/request.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										4
									
								
								.licenses/npm/@octokit/request.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,10 +1,10 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/request" | name: "@octokit/request" | ||||||
| version: 6.2.8 | version: 8.4.1 | ||||||
| type: npm | type: npm | ||||||
| summary: Send parameterized requests to GitHub's APIs with sensible defaults in browsers | summary: Send parameterized requests to GitHub's APIs with sensible defaults in browsers | ||||||
|   and Node |   and Node | ||||||
| homepage:  | homepage: | ||||||
| license: mit | license: mit | ||||||
| licenses: | licenses: | ||||||
| - sources: LICENSE | - sources: LICENSE | ||||||
|   | |||||||
| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/types" | name: "@octokit/types" | ||||||
| version: 10.0.0 | version: 12.6.0 | ||||||
| type: npm | type: npm | ||||||
| summary: Shared TypeScript definitions for Octokit projects | summary: Shared TypeScript definitions for Octokit projects | ||||||
| homepage:  | homepage:  | ||||||
| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: "@octokit/types" | name: "@octokit/types" | ||||||
| version: 9.3.2 | version: 13.4.1 | ||||||
| type: npm | type: npm | ||||||
| summary: Shared TypeScript definitions for Octokit projects | summary: Shared TypeScript definitions for Octokit projects | ||||||
| homepage:  | homepage:  | ||||||
							
								
								
									
										40
									
								
								.licenses/npm/is-plain-object.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										40
									
								
								.licenses/npm/is-plain-object.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,40 +0,0 @@ | |||||||
| --- |  | ||||||
| name: is-plain-object |  | ||||||
| version: 5.0.0 |  | ||||||
| type: npm |  | ||||||
| summary: Returns true if an object was created by the `Object` constructor, or Object.create(null). |  | ||||||
| homepage: https://github.com/jonschlinkert/is-plain-object |  | ||||||
| license: mit |  | ||||||
| licenses: |  | ||||||
| - sources: LICENSE |  | ||||||
|   text: | |  | ||||||
|     The MIT License (MIT) |  | ||||||
| 
 |  | ||||||
|     Copyright (c) 2014-2017, Jon Schlinkert. |  | ||||||
| 
 |  | ||||||
|     Permission is hereby granted, free of charge, to any person obtaining a copy |  | ||||||
|     of this software and associated documentation files (the "Software"), to deal |  | ||||||
|     in the Software without restriction, including without limitation the rights |  | ||||||
|     to use, copy, modify, merge, publish, distribute, sublicense, and/or sell |  | ||||||
|     copies of the Software, and to permit persons to whom the Software is |  | ||||||
|     furnished to do so, subject to the following conditions: |  | ||||||
| 
 |  | ||||||
|     The above copyright notice and this permission notice shall be included in |  | ||||||
|     all copies or substantial portions of the Software. |  | ||||||
| 
 |  | ||||||
|     THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR |  | ||||||
|     IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, |  | ||||||
|     FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE |  | ||||||
|     AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER |  | ||||||
|     LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, |  | ||||||
|     OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN |  | ||||||
|     THE SOFTWARE. |  | ||||||
| - sources: README.md |  | ||||||
|   text: |- |  | ||||||
|     Copyright © 2019, [Jon Schlinkert](https://github.com/jonschlinkert). |  | ||||||
|     Released under the [MIT License](LICENSE). |  | ||||||
| 
 |  | ||||||
|     *** |  | ||||||
| 
 |  | ||||||
|     _This file was generated by [verb-generate-readme](https://github.com/verbose/verb-generate-readme), v0.8.0, on April 28, 2019._ |  | ||||||
| notices: [] |  | ||||||
							
								
								
									
										56
									
								
								.licenses/npm/node-fetch.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										56
									
								
								.licenses/npm/node-fetch.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,56 +0,0 @@ | |||||||
| --- |  | ||||||
| name: node-fetch |  | ||||||
| version: 2.7.0 |  | ||||||
| type: npm |  | ||||||
| summary: A light-weight module that brings window.fetch to node.js |  | ||||||
| homepage: https://github.com/bitinn/node-fetch |  | ||||||
| license: mit |  | ||||||
| licenses: |  | ||||||
| - sources: LICENSE.md |  | ||||||
|   text: |+ |  | ||||||
|     The MIT License (MIT) |  | ||||||
| 
 |  | ||||||
|     Copyright (c) 2016 David Frank |  | ||||||
| 
 |  | ||||||
|     Permission is hereby granted, free of charge, to any person obtaining a copy |  | ||||||
|     of this software and associated documentation files (the "Software"), to deal |  | ||||||
|     in the Software without restriction, including without limitation the rights |  | ||||||
|     to use, copy, modify, merge, publish, distribute, sublicense, and/or sell |  | ||||||
|     copies of the Software, and to permit persons to whom the Software is |  | ||||||
|     furnished to do so, subject to the following conditions: |  | ||||||
| 
 |  | ||||||
|     The above copyright notice and this permission notice shall be included in all |  | ||||||
|     copies or substantial portions of the Software. |  | ||||||
| 
 |  | ||||||
|     THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR |  | ||||||
|     IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, |  | ||||||
|     FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE |  | ||||||
|     AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER |  | ||||||
|     LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, |  | ||||||
|     OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE |  | ||||||
|     SOFTWARE. |  | ||||||
| 
 |  | ||||||
| - sources: README.md |  | ||||||
|   text: |- |  | ||||||
|     MIT |  | ||||||
| 
 |  | ||||||
|     [npm-image]: https://flat.badgen.net/npm/v/node-fetch |  | ||||||
|     [npm-url]: https://www.npmjs.com/package/node-fetch |  | ||||||
|     [travis-image]: https://flat.badgen.net/travis/bitinn/node-fetch |  | ||||||
|     [travis-url]: https://travis-ci.org/bitinn/node-fetch |  | ||||||
|     [codecov-image]: https://flat.badgen.net/codecov/c/github/bitinn/node-fetch/master |  | ||||||
|     [codecov-url]: https://codecov.io/gh/bitinn/node-fetch |  | ||||||
|     [install-size-image]: https://flat.badgen.net/packagephobia/install/node-fetch |  | ||||||
|     [install-size-url]: https://packagephobia.now.sh/result?p=node-fetch |  | ||||||
|     [discord-image]: https://img.shields.io/discord/619915844268326952?color=%237289DA&label=Discord&style=flat-square |  | ||||||
|     [discord-url]: https://discord.gg/Zxbndcm |  | ||||||
|     [opencollective-image]: https://opencollective.com/node-fetch/backers.svg |  | ||||||
|     [opencollective-url]: https://opencollective.com/node-fetch |  | ||||||
|     [whatwg-fetch]: https://fetch.spec.whatwg.org/ |  | ||||||
|     [response-init]: https://fetch.spec.whatwg.org/#responseinit |  | ||||||
|     [node-readable]: https://nodejs.org/api/stream.html#stream_readable_streams |  | ||||||
|     [mdn-headers]: https://developer.mozilla.org/en-US/docs/Web/API/Headers |  | ||||||
|     [LIMITS.md]: https://github.com/bitinn/node-fetch/blob/master/LIMITS.md |  | ||||||
|     [ERROR-HANDLING.md]: https://github.com/bitinn/node-fetch/blob/master/ERROR-HANDLING.md |  | ||||||
|     [UPGRADE-GUIDE.md]: https://github.com/bitinn/node-fetch/blob/master/UPGRADE-GUIDE.md |  | ||||||
| notices: [] |  | ||||||
							
								
								
									
										2
									
								
								.licenses/npm/semver.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/semver.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: semver | name: semver | ||||||
| version: 6.3.0 | version: 6.3.1 | ||||||
| type: npm | type: npm | ||||||
| summary: The semantic version parser used by npm. | summary: The semantic version parser used by npm. | ||||||
| homepage:  | homepage:  | ||||||
|   | |||||||
							
								
								
									
										30
									
								
								.licenses/npm/tr46.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										30
									
								
								.licenses/npm/tr46.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,30 +0,0 @@ | |||||||
| --- |  | ||||||
| name: tr46 |  | ||||||
| version: 0.0.3 |  | ||||||
| type: npm |  | ||||||
| summary: An implementation of the Unicode TR46 spec |  | ||||||
| homepage: https://github.com/Sebmaster/tr46.js#readme |  | ||||||
| license: mit |  | ||||||
| licenses: |  | ||||||
| - sources: Auto-generated MIT license text |  | ||||||
|   text: | |  | ||||||
|     MIT License |  | ||||||
| 
 |  | ||||||
|     Permission is hereby granted, free of charge, to any person obtaining a copy |  | ||||||
|     of this software and associated documentation files (the "Software"), to deal |  | ||||||
|     in the Software without restriction, including without limitation the rights |  | ||||||
|     to use, copy, modify, merge, publish, distribute, sublicense, and/or sell |  | ||||||
|     copies of the Software, and to permit persons to whom the Software is |  | ||||||
|     furnished to do so, subject to the following conditions: |  | ||||||
| 
 |  | ||||||
|     The above copyright notice and this permission notice shall be included in all |  | ||||||
|     copies or substantial portions of the Software. |  | ||||||
| 
 |  | ||||||
|     THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR |  | ||||||
|     IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, |  | ||||||
|     FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE |  | ||||||
|     AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER |  | ||||||
|     LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, |  | ||||||
|     OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE |  | ||||||
|     SOFTWARE. |  | ||||||
| notices: [] |  | ||||||
							
								
								
									
										2
									
								
								.licenses/npm/undici.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/undici.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: undici | name: undici | ||||||
| version: 5.25.4 | version: 5.29.0 | ||||||
| type: npm | type: npm | ||||||
| summary: An HTTP/1.1 client, written from scratch for Node.js | summary: An HTTP/1.1 client, written from scratch for Node.js | ||||||
| homepage: https://undici.nodejs.org | homepage: https://undici.nodejs.org | ||||||
|   | |||||||
							
								
								
									
										2
									
								
								.licenses/npm/universal-user-agent.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										2
									
								
								.licenses/npm/universal-user-agent.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| --- | --- | ||||||
| name: universal-user-agent | name: universal-user-agent | ||||||
| version: 6.0.0 | version: 6.0.1 | ||||||
| type: npm | type: npm | ||||||
| summary: Get a user agent string in both browser and node | summary: Get a user agent string in both browser and node | ||||||
| homepage:  | homepage:  | ||||||
|   | |||||||
							
								
								
									
										20
									
								
								.licenses/npm/uuid-9.0.1.dep.yml
									
									
									
										generated
									
									
									
										Normal file
									
								
							
							
						
						
									
										20
									
								
								.licenses/npm/uuid-9.0.1.dep.yml
									
									
									
										generated
									
									
									
										Normal file
									
								
							| @@ -0,0 +1,20 @@ | |||||||
|  | --- | ||||||
|  | name: uuid | ||||||
|  | version: 9.0.1 | ||||||
|  | type: npm | ||||||
|  | summary: RFC4122 (v1, v4, and v5) UUIDs | ||||||
|  | homepage:  | ||||||
|  | license: mit | ||||||
|  | licenses: | ||||||
|  | - sources: LICENSE.md | ||||||
|  |   text: | | ||||||
|  |     The MIT License (MIT) | ||||||
|  | 
 | ||||||
|  |     Copyright (c) 2010-2020 Robert Kieffer and other contributors | ||||||
|  | 
 | ||||||
|  |     Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions: | ||||||
|  | 
 | ||||||
|  |     The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software. | ||||||
|  | 
 | ||||||
|  |     THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE. | ||||||
|  | notices: [] | ||||||
							
								
								
									
										23
									
								
								.licenses/npm/webidl-conversions.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										23
									
								
								.licenses/npm/webidl-conversions.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,23 +0,0 @@ | |||||||
| --- |  | ||||||
| name: webidl-conversions |  | ||||||
| version: 3.0.1 |  | ||||||
| type: npm |  | ||||||
| summary: Implements the WebIDL algorithms for converting to and from JavaScript values |  | ||||||
| homepage: https://github.com/jsdom/webidl-conversions#readme |  | ||||||
| license: bsd-2-clause |  | ||||||
| licenses: |  | ||||||
| - sources: LICENSE.md |  | ||||||
|   text: | |  | ||||||
|     # The BSD 2-Clause License |  | ||||||
| 
 |  | ||||||
|     Copyright (c) 2014, Domenic Denicola |  | ||||||
|     All rights reserved. |  | ||||||
| 
 |  | ||||||
|     Redistribution and use in source and binary forms, with or without modification, are permitted provided that the following conditions are met: |  | ||||||
| 
 |  | ||||||
|     1. Redistributions of source code must retain the above copyright notice, this list of conditions and the following disclaimer. |  | ||||||
| 
 |  | ||||||
|     2. Redistributions in binary form must reproduce the above copyright notice, this list of conditions and the following disclaimer in the documentation and/or other materials provided with the distribution. |  | ||||||
| 
 |  | ||||||
|     THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. |  | ||||||
| notices: [] |  | ||||||
							
								
								
									
										32
									
								
								.licenses/npm/whatwg-url.dep.yml
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										32
									
								
								.licenses/npm/whatwg-url.dep.yml
									
									
									
										generated
									
									
									
								
							| @@ -1,32 +0,0 @@ | |||||||
| --- |  | ||||||
| name: whatwg-url |  | ||||||
| version: 5.0.0 |  | ||||||
| type: npm |  | ||||||
| summary: An implementation of the WHATWG URL Standard's URL API and parsing machinery |  | ||||||
| homepage: https://github.com/jsdom/whatwg-url#readme |  | ||||||
| license: mit |  | ||||||
| licenses: |  | ||||||
| - sources: LICENSE.txt |  | ||||||
|   text: | |  | ||||||
|     The MIT License (MIT) |  | ||||||
| 
 |  | ||||||
|     Copyright (c) 2015–2016 Sebastian Mayr |  | ||||||
| 
 |  | ||||||
|     Permission is hereby granted, free of charge, to any person obtaining a copy |  | ||||||
|     of this software and associated documentation files (the "Software"), to deal |  | ||||||
|     in the Software without restriction, including without limitation the rights |  | ||||||
|     to use, copy, modify, merge, publish, distribute, sublicense, and/or sell |  | ||||||
|     copies of the Software, and to permit persons to whom the Software is |  | ||||||
|     furnished to do so, subject to the following conditions: |  | ||||||
| 
 |  | ||||||
|     The above copyright notice and this permission notice shall be included in |  | ||||||
|     all copies or substantial portions of the Software. |  | ||||||
| 
 |  | ||||||
|     THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR |  | ||||||
|     IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, |  | ||||||
|     FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE |  | ||||||
|     AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER |  | ||||||
|     LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, |  | ||||||
|     OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN |  | ||||||
|     THE SOFTWARE. |  | ||||||
| notices: [] |  | ||||||
							
								
								
									
										59
									
								
								CHANGELOG.md
									
									
									
									
									
								
							
							
						
						
									
										59
									
								
								CHANGELOG.md
									
									
									
									
									
								
							| @@ -1,5 +1,64 @@ | |||||||
| # Changelog | # Changelog | ||||||
|  |  | ||||||
|  | ## V5.0.0 | ||||||
|  | * Update actions checkout to use node 24 by @salmanmkc in https://github.com/actions/checkout/pull/2226 | ||||||
|  |  | ||||||
|  |  | ||||||
|  | ## V4.3.0 | ||||||
|  | * docs: update README.md by @motss in https://github.com/actions/checkout/pull/1971 | ||||||
|  | * Add internal repos for checking out multiple repositories by @mouismail in https://github.com/actions/checkout/pull/1977 | ||||||
|  | * Documentation update - add recommended permissions to Readme by @benwells in https://github.com/actions/checkout/pull/2043 | ||||||
|  | * Adjust positioning of user email note and permissions heading by @joshmgross in https://github.com/actions/checkout/pull/2044 | ||||||
|  | * Update README.md by @nebuk89 in https://github.com/actions/checkout/pull/2194 | ||||||
|  | * Update CODEOWNERS for actions by @TingluoHuang in https://github.com/actions/checkout/pull/2224 | ||||||
|  | * Update package dependencies by @salmanmkc in https://github.com/actions/checkout/pull/2236 | ||||||
|  |  | ||||||
|  | ## v4.2.2 | ||||||
|  | * `url-helper.ts` now leverages well-known environment variables by @jww3 in https://github.com/actions/checkout/pull/1941 | ||||||
|  | * Expand unit test coverage for `isGhes` by @jww3 in https://github.com/actions/checkout/pull/1946 | ||||||
|  |  | ||||||
|  | ## v4.2.1 | ||||||
|  | * Check out other refs/* by commit if provided, fall back to ref by @orhantoy in https://github.com/actions/checkout/pull/1924 | ||||||
|  |  | ||||||
|  | ## v4.2.0 | ||||||
|  |  | ||||||
|  | * Add Ref and Commit outputs by @lucacome in https://github.com/actions/checkout/pull/1180 | ||||||
|  | * Dependency updates by @dependabot- https://github.com/actions/checkout/pull/1777, https://github.com/actions/checkout/pull/1872 | ||||||
|  |  | ||||||
|  | ## v4.1.7 | ||||||
|  | * Bump the minor-npm-dependencies group across 1 directory with 4 updates by @dependabot in https://github.com/actions/checkout/pull/1739 | ||||||
|  | * Bump actions/checkout from 3 to 4 by @dependabot in https://github.com/actions/checkout/pull/1697 | ||||||
|  | * Check out other refs/* by commit by @orhantoy in https://github.com/actions/checkout/pull/1774 | ||||||
|  | * Pin actions/checkout's own workflows to a known, good, stable version. by @jww3 in https://github.com/actions/checkout/pull/1776 | ||||||
|  |  | ||||||
|  | ## v4.1.6 | ||||||
|  | * Check platform to set archive extension appropriately by @cory-miller in https://github.com/actions/checkout/pull/1732 | ||||||
|  |  | ||||||
|  | ## v4.1.5 | ||||||
|  | * Update NPM dependencies by @cory-miller in https://github.com/actions/checkout/pull/1703 | ||||||
|  | * Bump github/codeql-action from 2 to 3 by @dependabot in https://github.com/actions/checkout/pull/1694 | ||||||
|  | * Bump actions/setup-node from 1 to 4 by @dependabot in https://github.com/actions/checkout/pull/1696 | ||||||
|  | * Bump actions/upload-artifact from 2 to 4 by @dependabot in https://github.com/actions/checkout/pull/1695 | ||||||
|  | * README: Suggest `user.email` to be `41898282+github-actions[bot]@users.noreply.github.com` by @cory-miller in https://github.com/actions/checkout/pull/1707 | ||||||
|  |  | ||||||
|  | ## v4.1.4 | ||||||
|  | - Disable `extensions.worktreeConfig` when disabling `sparse-checkout` by @jww3 in https://github.com/actions/checkout/pull/1692 | ||||||
|  | - Add dependabot config by @cory-miller in https://github.com/actions/checkout/pull/1688 | ||||||
|  | - Bump the minor-actions-dependencies group with 2 updates by @dependabot in https://github.com/actions/checkout/pull/1693 | ||||||
|  | - Bump word-wrap from 1.2.3 to 1.2.5 by @dependabot in https://github.com/actions/checkout/pull/1643 | ||||||
|  |  | ||||||
|  | ## v4.1.3 | ||||||
|  | - Check git version before attempting to disable `sparse-checkout` by @jww3 in https://github.com/actions/checkout/pull/1656 | ||||||
|  | - Add SSH user parameter by @cory-miller in https://github.com/actions/checkout/pull/1685 | ||||||
|  | - Update `actions/checkout` version in `update-main-version.yml` by @jww3 in https://github.com/actions/checkout/pull/1650 | ||||||
|  |  | ||||||
|  | ## v4.1.2 | ||||||
|  | - Fix: Disable sparse checkout whenever `sparse-checkout` option is not present @dscho in https://github.com/actions/checkout/pull/1598 | ||||||
|  |  | ||||||
|  | ## v4.1.1 | ||||||
|  | - Correct link to GitHub Docs by @peterbe in https://github.com/actions/checkout/pull/1511 | ||||||
|  | - Link to release page from what's new section by @cory-miller in https://github.com/actions/checkout/pull/1514 | ||||||
|  |  | ||||||
| ## v4.1.0 | ## v4.1.0 | ||||||
| - [Add support for partial checkout filters](https://github.com/actions/checkout/pull/1396) | - [Add support for partial checkout filters](https://github.com/actions/checkout/pull/1396) | ||||||
|  |  | ||||||
|   | |||||||
							
								
								
									
										147
									
								
								README.md
									
									
									
									
									
								
							
							
						
						
									
										147
									
								
								README.md
									
									
									
									
									
								
							| @@ -1,26 +1,50 @@ | |||||||
| [](https://github.com/actions/checkout/actions/workflows/test.yml) | [](https://github.com/actions/checkout/actions/workflows/test.yml) | ||||||
|  |  | ||||||
|  | # Checkout V5 | ||||||
|  |  | ||||||
|  | ## What's new | ||||||
|  |  | ||||||
|  | - Updated to the node24 runtime | ||||||
|  |   - This requires a minimum Actions Runner version of [v2.327.1](https://github.com/actions/runner/releases/tag/v2.327.1) to run. | ||||||
|  |  | ||||||
|  |  | ||||||
| # Checkout V4 | # Checkout V4 | ||||||
|  |  | ||||||
| This action checks-out your repository under `$GITHUB_WORKSPACE`, so your workflow can access it. | This action checks-out your repository under `$GITHUB_WORKSPACE`, so your workflow can access it. | ||||||
|  |  | ||||||
| Only a single commit is fetched by default, for the ref/SHA that triggered the workflow. Set `fetch-depth: 0` to fetch all history for all branches and tags. Refer [here](https://help.github.com/en/articles/events-that-trigger-workflows) to learn which commit `$GITHUB_SHA` points to for different events. | Only a single commit is fetched by default, for the ref/SHA that triggered the workflow. Set `fetch-depth: 0` to fetch all history for all branches and tags. Refer [here](https://docs.github.com/actions/using-workflows/events-that-trigger-workflows) to learn which commit `$GITHUB_SHA` points to for different events. | ||||||
|  |  | ||||||
| The auth token is persisted in the local git config. This enables your scripts to run authenticated git commands. The token is removed during post-job cleanup. Set `persist-credentials: false` to opt-out. | The auth token is persisted in the local git config. This enables your scripts to run authenticated git commands. The token is removed during post-job cleanup. Set `persist-credentials: false` to opt-out. | ||||||
|  |  | ||||||
| When Git 2.18 or higher is not in your PATH, falls back to the REST API to download the files. | When Git 2.18 or higher is not in your PATH, falls back to the REST API to download the files. | ||||||
|  |  | ||||||
|  | ### Note | ||||||
|  |  | ||||||
|  | Thank you for your interest in this GitHub action, however, right now we are not taking contributions.  | ||||||
|  |  | ||||||
|  | We continue to focus our resources on strategic areas that help our customers be successful while making developers' lives easier. While GitHub Actions remains a key part of this vision, we are allocating resources towards other areas of Actions and are not taking contributions to this repository at this time. The GitHub public roadmap is the best place to follow along for any updates on features we’re working on and what stage they’re in. | ||||||
|  |  | ||||||
|  | We are taking the following steps to better direct requests related to GitHub Actions, including: | ||||||
|  |  | ||||||
|  | 1. We will be directing questions and support requests to our [Community Discussions area](https://github.com/orgs/community/discussions/categories/actions) | ||||||
|  |  | ||||||
|  | 2. High Priority bugs can be reported through Community Discussions or you can report these to our support team https://support.github.com/contact/bug-report. | ||||||
|  |  | ||||||
|  | 3. Security Issues should be handled as per our [security.md](security.md) | ||||||
|  |  | ||||||
|  | We will still provide security updates for this project and fix major breaking changes during this time. | ||||||
|  |  | ||||||
|  | You are welcome to still raise bugs in this repo. | ||||||
|  |  | ||||||
| # What's new | # What's new | ||||||
|  |  | ||||||
| - Updated default runtime to node20 | Please refer to the [release page](https://github.com/actions/checkout/releases/latest) for the latest release notes. | ||||||
|   - This requires a minimum Actions Runner version of [v2.308.0](https://github.com/actions/runner/releases/tag/v2.308.0). |  | ||||||
| - Added support for fetching without the `--progress` option |  | ||||||
|  |  | ||||||
| # Usage | # Usage | ||||||
|  |  | ||||||
| <!-- start usage --> | <!-- start usage --> | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     # Repository name with owner. For example, actions/checkout |     # Repository name with owner. For example, actions/checkout | ||||||
|     # Default: ${{ github.repository }} |     # Default: ${{ github.repository }} | ||||||
| @@ -64,6 +88,11 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
|     # Default: true |     # Default: true | ||||||
|     ssh-strict: '' |     ssh-strict: '' | ||||||
|  |  | ||||||
|  |     # The user to use when connecting to the remote SSH host. By default 'git' is | ||||||
|  |     # used. | ||||||
|  |     # Default: git | ||||||
|  |     ssh-user: '' | ||||||
|  |  | ||||||
|     # Whether to configure the token or SSH key with the local git config |     # Whether to configure the token or SSH key with the local git config | ||||||
|     # Default: true |     # Default: true | ||||||
|     persist-credentials: '' |     persist-credentials: '' | ||||||
| @@ -128,23 +157,33 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
|  |  | ||||||
| # Scenarios | # Scenarios | ||||||
|  |  | ||||||
| - [Fetch only the root files](#Fetch-only-the-root-files) | - [Checkout V5](#checkout-v5) | ||||||
| - [Fetch only the root files and `.github` and `src` folder](#Fetch-only-the-root-files-and-github-and-src-folder) |   - [What's new](#whats-new) | ||||||
| - [Fetch only a single file](#Fetch-only-a-single-file) | - [Checkout V4](#checkout-v4) | ||||||
| - [Fetch all history for all tags and branches](#Fetch-all-history-for-all-tags-and-branches) |     - [Note](#note) | ||||||
| - [Checkout a different branch](#Checkout-a-different-branch) | - [What's new](#whats-new-1) | ||||||
| - [Checkout HEAD^](#Checkout-HEAD) | - [Usage](#usage) | ||||||
| - [Checkout multiple repos (side by side)](#Checkout-multiple-repos-side-by-side) | - [Scenarios](#scenarios) | ||||||
| - [Checkout multiple repos (nested)](#Checkout-multiple-repos-nested) |   - [Fetch only the root files](#fetch-only-the-root-files) | ||||||
| - [Checkout multiple repos (private)](#Checkout-multiple-repos-private) |   - [Fetch only the root files and `.github` and `src` folder](#fetch-only-the-root-files-and-github-and-src-folder) | ||||||
| - [Checkout pull request HEAD commit instead of merge commit](#Checkout-pull-request-HEAD-commit-instead-of-merge-commit) |   - [Fetch only a single file](#fetch-only-a-single-file) | ||||||
| - [Checkout pull request on closed event](#Checkout-pull-request-on-closed-event) |   - [Fetch all history for all tags and branches](#fetch-all-history-for-all-tags-and-branches) | ||||||
| - [Push a commit using the built-in token](#Push-a-commit-using-the-built-in-token) |   - [Checkout a different branch](#checkout-a-different-branch) | ||||||
|  |   - [Checkout HEAD^](#checkout-head) | ||||||
|  |   - [Checkout multiple repos (side by side)](#checkout-multiple-repos-side-by-side) | ||||||
|  |   - [Checkout multiple repos (nested)](#checkout-multiple-repos-nested) | ||||||
|  |   - [Checkout multiple repos (private)](#checkout-multiple-repos-private) | ||||||
|  |   - [Checkout pull request HEAD commit instead of merge commit](#checkout-pull-request-head-commit-instead-of-merge-commit) | ||||||
|  |   - [Checkout pull request on closed event](#checkout-pull-request-on-closed-event) | ||||||
|  |   - [Push a commit using the built-in token](#push-a-commit-using-the-built-in-token) | ||||||
|  |   - [Push a commit to a PR using the built-in token](#push-a-commit-to-a-pr-using-the-built-in-token) | ||||||
|  | - [Recommended permissions](#recommended-permissions) | ||||||
|  | - [License](#license) | ||||||
|  |  | ||||||
| ## Fetch only the root files | ## Fetch only the root files | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     sparse-checkout: . |     sparse-checkout: . | ||||||
| ``` | ``` | ||||||
| @@ -152,7 +191,7 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
| ## Fetch only the root files and `.github` and `src` folder | ## Fetch only the root files and `.github` and `src` folder | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     sparse-checkout: | |     sparse-checkout: | | ||||||
|       .github |       .github | ||||||
| @@ -162,7 +201,7 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
| ## Fetch only a single file | ## Fetch only a single file | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     sparse-checkout: | |     sparse-checkout: | | ||||||
|       README.md |       README.md | ||||||
| @@ -172,7 +211,7 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
| ## Fetch all history for all tags and branches | ## Fetch all history for all tags and branches | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     fetch-depth: 0 |     fetch-depth: 0 | ||||||
| ``` | ``` | ||||||
| @@ -180,7 +219,7 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
| ## Checkout a different branch | ## Checkout a different branch | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     ref: my-branch |     ref: my-branch | ||||||
| ``` | ``` | ||||||
| @@ -188,7 +227,7 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
| ## Checkout HEAD^ | ## Checkout HEAD^ | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     fetch-depth: 2 |     fetch-depth: 2 | ||||||
| - run: git checkout HEAD^ | - run: git checkout HEAD^ | ||||||
| @@ -198,42 +237,42 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - name: Checkout | - name: Checkout | ||||||
|   uses: actions/checkout@v4 |   uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     path: main |     path: main | ||||||
|  |  | ||||||
| - name: Checkout tools repo | - name: Checkout tools repo | ||||||
|   uses: actions/checkout@v4 |   uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     repository: my-org/my-tools |     repository: my-org/my-tools | ||||||
|     path: my-tools |     path: my-tools | ||||||
| ``` | ``` | ||||||
| > - If your secondary repository is private you will need to add the option noted in [Checkout multiple repos (private)](#Checkout-multiple-repos-private) | > - If your secondary repository is private or internal you will need to add the option noted in [Checkout multiple repos (private)](#Checkout-multiple-repos-private) | ||||||
|  |  | ||||||
| ## Checkout multiple repos (nested) | ## Checkout multiple repos (nested) | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - name: Checkout | - name: Checkout | ||||||
|   uses: actions/checkout@v4 |   uses: actions/checkout@v5 | ||||||
|  |  | ||||||
| - name: Checkout tools repo | - name: Checkout tools repo | ||||||
|   uses: actions/checkout@v4 |   uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     repository: my-org/my-tools |     repository: my-org/my-tools | ||||||
|     path: my-tools |     path: my-tools | ||||||
| ``` | ``` | ||||||
| > - If your secondary repository is private you will need to add the option noted in [Checkout multiple repos (private)](#Checkout-multiple-repos-private) | > - If your secondary repository is private or internal you will need to add the option noted in [Checkout multiple repos (private)](#Checkout-multiple-repos-private) | ||||||
|  |  | ||||||
| ## Checkout multiple repos (private) | ## Checkout multiple repos (private) | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - name: Checkout | - name: Checkout | ||||||
|   uses: actions/checkout@v4 |   uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     path: main |     path: main | ||||||
|  |  | ||||||
| - name: Checkout private tools | - name: Checkout private tools | ||||||
|   uses: actions/checkout@v4 |   uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     repository: my-org/my-private-tools |     repository: my-org/my-private-tools | ||||||
|     token: ${{ secrets.GH_PAT }} # `GH_PAT` is a secret that contains your PAT |     token: ${{ secrets.GH_PAT }} # `GH_PAT` is a secret that contains your PAT | ||||||
| @@ -246,7 +285,7 @@ When Git 2.18 or higher is not in your PATH, falls back to the REST API to downl | |||||||
| ## Checkout pull request HEAD commit instead of merge commit | ## Checkout pull request HEAD commit instead of merge commit | ||||||
|  |  | ||||||
| ```yaml | ```yaml | ||||||
| - uses: actions/checkout@v4 | - uses: actions/checkout@v5 | ||||||
|   with: |   with: | ||||||
|     ref: ${{ github.event.pull_request.head.sha }} |     ref: ${{ github.event.pull_request.head.sha }} | ||||||
| ``` | ``` | ||||||
| @@ -262,7 +301,7 @@ jobs: | |||||||
|   build: |   build: | ||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|     steps: |     steps: | ||||||
|       - uses: actions/checkout@v4 |       - uses: actions/checkout@v5 | ||||||
| ``` | ``` | ||||||
|  |  | ||||||
| ## Push a commit using the built-in token | ## Push a commit using the built-in token | ||||||
| @@ -273,16 +312,52 @@ jobs: | |||||||
|   build: |   build: | ||||||
|     runs-on: ubuntu-latest |     runs-on: ubuntu-latest | ||||||
|     steps: |     steps: | ||||||
|       - uses: actions/checkout@v4 |       - uses: actions/checkout@v5 | ||||||
|       - run: | |       - run: | | ||||||
|           date > generated.txt |           date > generated.txt | ||||||
|           git config user.name github-actions |           # Note: the following account information will not work on GHES | ||||||
|           git config user.email github-actions@github.com |           git config user.name "github-actions[bot]" | ||||||
|  |           git config user.email "41898282+github-actions[bot]@users.noreply.github.com" | ||||||
|  |           git add . | ||||||
|  |           git commit -m "generated" | ||||||
|  |           git push | ||||||
|  | ``` | ||||||
|  | *NOTE:* The user email is `{user.id}+{user.login}@users.noreply.github.com`. See users API: https://api.github.com/users/github-actions%5Bbot%5D | ||||||
|  |  | ||||||
|  | ## Push a commit to a PR using the built-in token | ||||||
|  |  | ||||||
|  | In a pull request trigger, `ref` is required as GitHub Actions checks out in detached HEAD mode, meaning it doesn’t check out your branch by default. | ||||||
|  |  | ||||||
|  | ```yaml | ||||||
|  | on: pull_request | ||||||
|  | jobs: | ||||||
|  |   build: | ||||||
|  |     runs-on: ubuntu-latest | ||||||
|  |     steps: | ||||||
|  |       - uses: actions/checkout@v5 | ||||||
|  |         with: | ||||||
|  |           ref: ${{ github.head_ref }} | ||||||
|  |       - run: | | ||||||
|  |           date > generated.txt | ||||||
|  |           # Note: the following account information will not work on GHES | ||||||
|  |           git config user.name "github-actions[bot]" | ||||||
|  |           git config user.email "41898282+github-actions[bot]@users.noreply.github.com" | ||||||
|           git add . |           git add . | ||||||
|           git commit -m "generated" |           git commit -m "generated" | ||||||
|           git push |           git push | ||||||
| ``` | ``` | ||||||
|  |  | ||||||
|  | *NOTE:* The user email is `{user.id}+{user.login}@users.noreply.github.com`. See users API: https://api.github.com/users/github-actions%5Bbot%5D | ||||||
|  |  | ||||||
|  | # Recommended permissions | ||||||
|  |  | ||||||
|  | When using the `checkout` action in your GitHub Actions workflow, it is recommended to set the following `GITHUB_TOKEN` permissions to ensure proper functionality, unless alternative auth is provided via the `token` or `ssh-key` inputs: | ||||||
|  |  | ||||||
|  | ```yaml | ||||||
|  | permissions: | ||||||
|  |   contents: read | ||||||
|  | ``` | ||||||
|  |  | ||||||
| # License | # License | ||||||
|  |  | ||||||
| The scripts and documentation in this project are released under the [MIT License](LICENSE) | The scripts and documentation in this project are released under the [MIT License](LICENSE) | ||||||
|   | |||||||
| @@ -86,16 +86,29 @@ describe('git-auth-helper tests', () => { | |||||||
|     // Act |     // Act | ||||||
|     await authHelper.configureAuth() |     await authHelper.configureAuth() | ||||||
|  |  | ||||||
|     // Assert config |     // Assert config - check that .git/config contains includeIf entries | ||||||
|     const configContent = ( |     const localConfigContent = ( | ||||||
|       await fs.promises.readFile(localGitConfigPath) |       await fs.promises.readFile(localGitConfigPath) | ||||||
|     ).toString() |     ).toString() | ||||||
|  |     expect( | ||||||
|  |       localConfigContent.indexOf('includeIf.gitdir:') | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Assert credentials config file contains the actual credentials | ||||||
|  |     const credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|  |       f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |     ) | ||||||
|  |     expect(credentialsFiles.length).toBe(1) | ||||||
|  |     const credentialsConfigPath = path.join(runnerTemp, credentialsFiles[0]) | ||||||
|  |     const credentialsContent = ( | ||||||
|  |       await fs.promises.readFile(credentialsConfigPath) | ||||||
|  |     ).toString() | ||||||
|     const basicCredential = Buffer.from( |     const basicCredential = Buffer.from( | ||||||
|       `x-access-token:${settings.authToken}`, |       `x-access-token:${settings.authToken}`, | ||||||
|       'utf8' |       'utf8' | ||||||
|     ).toString('base64') |     ).toString('base64') | ||||||
|     expect( |     expect( | ||||||
|       configContent.indexOf( |       credentialsContent.indexOf( | ||||||
|         `http.${expectedServerUrl}/.extraheader AUTHORIZATION: basic ${basicCredential}` |         `http.${expectedServerUrl}/.extraheader AUTHORIZATION: basic ${basicCredential}` | ||||||
|       ) |       ) | ||||||
|     ).toBeGreaterThanOrEqual(0) |     ).toBeGreaterThanOrEqual(0) | ||||||
| @@ -120,7 +133,7 @@ describe('git-auth-helper tests', () => { | |||||||
|     'inject https://github.com as github server url' |     'inject https://github.com as github server url' | ||||||
|   it(configureAuth_AcceptsGitHubServerUrlSetToGHEC, async () => { |   it(configureAuth_AcceptsGitHubServerUrlSetToGHEC, async () => { | ||||||
|     await testAuthHeader( |     await testAuthHeader( | ||||||
|       configureAuth_AcceptsGitHubServerUrl, |       configureAuth_AcceptsGitHubServerUrlSetToGHEC, | ||||||
|       'https://github.com' |       'https://github.com' | ||||||
|     ) |     ) | ||||||
|   }) |   }) | ||||||
| @@ -141,12 +154,17 @@ describe('git-auth-helper tests', () => { | |||||||
|       // Act |       // Act | ||||||
|       await authHelper.configureAuth() |       await authHelper.configureAuth() | ||||||
|  |  | ||||||
|       // Assert config |       // Assert config - check credentials config file (not local .git/config) | ||||||
|       const configContent = ( |       const credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|         await fs.promises.readFile(localGitConfigPath) |         f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |       ) | ||||||
|  |       expect(credentialsFiles.length).toBe(1) | ||||||
|  |       const credentialsConfigPath = path.join(runnerTemp, credentialsFiles[0]) | ||||||
|  |       const credentialsContent = ( | ||||||
|  |         await fs.promises.readFile(credentialsConfigPath) | ||||||
|       ).toString() |       ).toString() | ||||||
|       expect( |       expect( | ||||||
|         configContent.indexOf( |         credentialsContent.indexOf( | ||||||
|           `http.https://github.com/.extraheader AUTHORIZATION` |           `http.https://github.com/.extraheader AUTHORIZATION` | ||||||
|         ) |         ) | ||||||
|       ).toBeGreaterThanOrEqual(0) |       ).toBeGreaterThanOrEqual(0) | ||||||
| @@ -251,13 +269,16 @@ describe('git-auth-helper tests', () => { | |||||||
|       expectedSshCommand |       expectedSshCommand | ||||||
|     ) |     ) | ||||||
|  |  | ||||||
|     // Asserty git config |     // Assert git config | ||||||
|     const gitConfigLines = (await fs.promises.readFile(localGitConfigPath)) |     const gitConfigLines = (await fs.promises.readFile(localGitConfigPath)) | ||||||
|       .toString() |       .toString() | ||||||
|       .split('\n') |       .split('\n') | ||||||
|       .filter(x => x) |       .filter(x => x) | ||||||
|     expect(gitConfigLines).toHaveLength(1) |     // Should have includeIf entries pointing to credentials file | ||||||
|     expect(gitConfigLines[0]).toMatch(/^http\./) |     expect(gitConfigLines.length).toBeGreaterThan(0) | ||||||
|  |     expect( | ||||||
|  |       gitConfigLines.some(line => line.indexOf('includeIf.gitdir:') >= 0) | ||||||
|  |     ).toBeTruthy() | ||||||
|   }) |   }) | ||||||
|  |  | ||||||
|   const configureAuth_setsSshCommandWhenPersistCredentialsTrue = |   const configureAuth_setsSshCommandWhenPersistCredentialsTrue = | ||||||
| @@ -419,8 +440,20 @@ describe('git-auth-helper tests', () => { | |||||||
|     expect( |     expect( | ||||||
|       configContent.indexOf('value-from-global-config') |       configContent.indexOf('value-from-global-config') | ||||||
|     ).toBeGreaterThanOrEqual(0) |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |     // Global config should have include.path pointing to credentials file | ||||||
|  |     expect(configContent.indexOf('include.path')).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Check credentials in the separate config file | ||||||
|  |     const credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|  |       f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |     ) | ||||||
|  |     expect(credentialsFiles.length).toBeGreaterThan(0) | ||||||
|  |     const credentialsConfigPath = path.join(runnerTemp, credentialsFiles[0]) | ||||||
|  |     const credentialsContent = ( | ||||||
|  |       await fs.promises.readFile(credentialsConfigPath) | ||||||
|  |     ).toString() | ||||||
|     expect( |     expect( | ||||||
|       configContent.indexOf( |       credentialsContent.indexOf( | ||||||
|         `http.https://github.com/.extraheader AUTHORIZATION: basic ${basicCredential}` |         `http.https://github.com/.extraheader AUTHORIZATION: basic ${basicCredential}` | ||||||
|       ) |       ) | ||||||
|     ).toBeGreaterThanOrEqual(0) |     ).toBeGreaterThanOrEqual(0) | ||||||
| @@ -463,8 +496,20 @@ describe('git-auth-helper tests', () => { | |||||||
|       const configContent = ( |       const configContent = ( | ||||||
|         await fs.promises.readFile(path.join(git.env['HOME'], '.gitconfig')) |         await fs.promises.readFile(path.join(git.env['HOME'], '.gitconfig')) | ||||||
|       ).toString() |       ).toString() | ||||||
|  |       // Global config should have include.path pointing to credentials file | ||||||
|  |       expect(configContent.indexOf('include.path')).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |       // Check credentials in the separate config file | ||||||
|  |       const credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|  |         f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |       ) | ||||||
|  |       expect(credentialsFiles.length).toBeGreaterThan(0) | ||||||
|  |       const credentialsConfigPath = path.join(runnerTemp, credentialsFiles[0]) | ||||||
|  |       const credentialsContent = ( | ||||||
|  |         await fs.promises.readFile(credentialsConfigPath) | ||||||
|  |       ).toString() | ||||||
|       expect( |       expect( | ||||||
|         configContent.indexOf( |         credentialsContent.indexOf( | ||||||
|           `http.https://github.com/.extraheader AUTHORIZATION: basic ${basicCredential}` |           `http.https://github.com/.extraheader AUTHORIZATION: basic ${basicCredential}` | ||||||
|         ) |         ) | ||||||
|       ).toBeGreaterThanOrEqual(0) |       ).toBeGreaterThanOrEqual(0) | ||||||
| @@ -550,15 +595,15 @@ describe('git-auth-helper tests', () => { | |||||||
|       await authHelper.configureSubmoduleAuth() |       await authHelper.configureSubmoduleAuth() | ||||||
|  |  | ||||||
|       // Assert |       // Assert | ||||||
|       expect(mockSubmoduleForeach).toHaveBeenCalledTimes(4) |       // Should configure insteadOf (2 calls for two values) | ||||||
|  |       expect(mockSubmoduleForeach).toHaveBeenCalledTimes(3) | ||||||
|       expect(mockSubmoduleForeach.mock.calls[0][0]).toMatch( |       expect(mockSubmoduleForeach.mock.calls[0][0]).toMatch( | ||||||
|         /unset-all.*insteadOf/ |         /unset-all.*insteadOf/ | ||||||
|       ) |       ) | ||||||
|       expect(mockSubmoduleForeach.mock.calls[1][0]).toMatch(/http.*extraheader/) |       expect(mockSubmoduleForeach.mock.calls[1][0]).toMatch( | ||||||
|       expect(mockSubmoduleForeach.mock.calls[2][0]).toMatch( |  | ||||||
|         /url.*insteadOf.*git@github.com:/ |         /url.*insteadOf.*git@github.com:/ | ||||||
|       ) |       ) | ||||||
|       expect(mockSubmoduleForeach.mock.calls[3][0]).toMatch( |       expect(mockSubmoduleForeach.mock.calls[2][0]).toMatch( | ||||||
|         /url.*insteadOf.*org-123456@github.com:/ |         /url.*insteadOf.*org-123456@github.com:/ | ||||||
|       ) |       ) | ||||||
|     } |     } | ||||||
| @@ -589,12 +634,12 @@ describe('git-auth-helper tests', () => { | |||||||
|       await authHelper.configureSubmoduleAuth() |       await authHelper.configureSubmoduleAuth() | ||||||
|  |  | ||||||
|       // Assert |       // Assert | ||||||
|       expect(mockSubmoduleForeach).toHaveBeenCalledTimes(3) |       // Should configure sshCommand (1 call) | ||||||
|  |       expect(mockSubmoduleForeach).toHaveBeenCalledTimes(2) | ||||||
|       expect(mockSubmoduleForeach.mock.calls[0][0]).toMatch( |       expect(mockSubmoduleForeach.mock.calls[0][0]).toMatch( | ||||||
|         /unset-all.*insteadOf/ |         /unset-all.*insteadOf/ | ||||||
|       ) |       ) | ||||||
|       expect(mockSubmoduleForeach.mock.calls[1][0]).toMatch(/http.*extraheader/) |       expect(mockSubmoduleForeach.mock.calls[1][0]).toMatch(/core\.sshCommand/) | ||||||
|       expect(mockSubmoduleForeach.mock.calls[2][0]).toMatch(/core\.sshCommand/) |  | ||||||
|     } |     } | ||||||
|   ) |   ) | ||||||
|  |  | ||||||
| @@ -660,19 +705,201 @@ describe('git-auth-helper tests', () => { | |||||||
|     await setup(removeAuth_removesToken) |     await setup(removeAuth_removesToken) | ||||||
|     const authHelper = gitAuthHelper.createAuthHelper(git, settings) |     const authHelper = gitAuthHelper.createAuthHelper(git, settings) | ||||||
|     await authHelper.configureAuth() |     await authHelper.configureAuth() | ||||||
|     let gitConfigContent = ( |  | ||||||
|  |     // Verify includeIf entries exist in local config | ||||||
|  |     let localConfigContent = ( | ||||||
|       await fs.promises.readFile(localGitConfigPath) |       await fs.promises.readFile(localGitConfigPath) | ||||||
|     ).toString() |     ).toString() | ||||||
|     expect(gitConfigContent.indexOf('http.')).toBeGreaterThanOrEqual(0) // sanity check |     expect( | ||||||
|  |       localConfigContent.indexOf('includeIf.gitdir:') | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Verify both host and container includeIf entries are present | ||||||
|  |     const hostGitDir = path.join(workspace, '.git').replace(/\\/g, '/') | ||||||
|  |     expect( | ||||||
|  |       localConfigContent.indexOf(`includeIf.gitdir:${hostGitDir}.path`) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |     expect( | ||||||
|  |       localConfigContent.indexOf('includeIf.gitdir:/github/workspace/.git.path') | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Verify credentials file exists | ||||||
|  |     let credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|  |       f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |     ) | ||||||
|  |     expect(credentialsFiles.length).toBe(1) | ||||||
|  |     const credentialsFilePath = path.join(runnerTemp, credentialsFiles[0]) | ||||||
|  |  | ||||||
|  |     // Verify credentials file contains the auth token | ||||||
|  |     let credentialsContent = ( | ||||||
|  |       await fs.promises.readFile(credentialsFilePath) | ||||||
|  |     ).toString() | ||||||
|  |     const basicCredential = Buffer.from( | ||||||
|  |       `x-access-token:${settings.authToken}`, | ||||||
|  |       'utf8' | ||||||
|  |     ).toString('base64') | ||||||
|  |     expect( | ||||||
|  |       credentialsContent.indexOf( | ||||||
|  |         `http.https://github.com/.extraheader AUTHORIZATION: basic ${basicCredential}` | ||||||
|  |       ) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Verify the includeIf entries point to the credentials file | ||||||
|  |     const containerCredentialsPath = path.posix.join( | ||||||
|  |       '/github/runner_temp', | ||||||
|  |       path.basename(credentialsFilePath) | ||||||
|  |     ) | ||||||
|  |     expect( | ||||||
|  |       localConfigContent.indexOf(credentialsFilePath) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |     expect( | ||||||
|  |       localConfigContent.indexOf(containerCredentialsPath) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|     // Act |     // Act | ||||||
|     await authHelper.removeAuth() |     await authHelper.removeAuth() | ||||||
|  |  | ||||||
|     // Assert git config |     // Assert all includeIf entries removed from local git config | ||||||
|     gitConfigContent = ( |     localConfigContent = ( | ||||||
|       await fs.promises.readFile(localGitConfigPath) |       await fs.promises.readFile(localGitConfigPath) | ||||||
|     ).toString() |     ).toString() | ||||||
|     expect(gitConfigContent.indexOf('http.')).toBeLessThan(0) |     expect(localConfigContent.indexOf('includeIf.gitdir:')).toBeLessThan(0) | ||||||
|  |     expect( | ||||||
|  |       localConfigContent.indexOf(`includeIf.gitdir:${hostGitDir}.path`) | ||||||
|  |     ).toBeLessThan(0) | ||||||
|  |     expect( | ||||||
|  |       localConfigContent.indexOf('includeIf.gitdir:/github/workspace/.git.path') | ||||||
|  |     ).toBeLessThan(0) | ||||||
|  |     expect(localConfigContent.indexOf(credentialsFilePath)).toBeLessThan(0) | ||||||
|  |     expect(localConfigContent.indexOf(containerCredentialsPath)).toBeLessThan(0) | ||||||
|  |  | ||||||
|  |     // Assert credentials config file deleted | ||||||
|  |     credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|  |       f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |     ) | ||||||
|  |     expect(credentialsFiles.length).toBe(0) | ||||||
|  |  | ||||||
|  |     // Verify credentials file no longer exists on disk | ||||||
|  |     try { | ||||||
|  |       await fs.promises.stat(credentialsFilePath) | ||||||
|  |       throw new Error('Credentials file should have been deleted') | ||||||
|  |     } catch (err) { | ||||||
|  |       if ((err as any)?.code !== 'ENOENT') { | ||||||
|  |         throw err | ||||||
|  |       } | ||||||
|  |     } | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   const removeAuth_removesTokenFromSubmodules = | ||||||
|  |     'removeAuth removes token from submodules' | ||||||
|  |   it(removeAuth_removesTokenFromSubmodules, async () => { | ||||||
|  |     // Arrange | ||||||
|  |     await setup(removeAuth_removesTokenFromSubmodules) | ||||||
|  |  | ||||||
|  |     // Create fake submodule config paths | ||||||
|  |     const submodule1Dir = path.join(workspace, '.git', 'modules', 'submodule-1') | ||||||
|  |     const submodule2Dir = path.join(workspace, '.git', 'modules', 'submodule-2') | ||||||
|  |     const submodule1ConfigPath = path.join(submodule1Dir, 'config') | ||||||
|  |     const submodule2ConfigPath = path.join(submodule2Dir, 'config') | ||||||
|  |  | ||||||
|  |     await fs.promises.mkdir(submodule1Dir, {recursive: true}) | ||||||
|  |     await fs.promises.mkdir(submodule2Dir, {recursive: true}) | ||||||
|  |     await fs.promises.writeFile(submodule1ConfigPath, '') | ||||||
|  |     await fs.promises.writeFile(submodule2ConfigPath, '') | ||||||
|  |  | ||||||
|  |     // Mock getSubmoduleConfigPaths to return our fake submodules (for both configure and remove) | ||||||
|  |     const mockGetSubmoduleConfigPaths = | ||||||
|  |       git.getSubmoduleConfigPaths as jest.Mock<any, any> | ||||||
|  |     mockGetSubmoduleConfigPaths.mockResolvedValue([ | ||||||
|  |       submodule1ConfigPath, | ||||||
|  |       submodule2ConfigPath | ||||||
|  |     ]) | ||||||
|  |  | ||||||
|  |     const authHelper = gitAuthHelper.createAuthHelper(git, settings) | ||||||
|  |     await authHelper.configureAuth() | ||||||
|  |     await authHelper.configureSubmoduleAuth() | ||||||
|  |  | ||||||
|  |     // Verify credentials file exists | ||||||
|  |     let credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|  |       f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |     ) | ||||||
|  |     expect(credentialsFiles.length).toBe(1) | ||||||
|  |     const credentialsFilePath = path.join(runnerTemp, credentialsFiles[0]) | ||||||
|  |  | ||||||
|  |     // Verify submodule 1 config has includeIf entries | ||||||
|  |     let submodule1Content = ( | ||||||
|  |       await fs.promises.readFile(submodule1ConfigPath) | ||||||
|  |     ).toString() | ||||||
|  |     const submodule1GitDir = submodule1Dir.replace(/\\/g, '/') | ||||||
|  |     expect( | ||||||
|  |       submodule1Content.indexOf(`includeIf.gitdir:${submodule1GitDir}.path`) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |     expect( | ||||||
|  |       submodule1Content.indexOf(credentialsFilePath) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Verify submodule 2 config has includeIf entries | ||||||
|  |     let submodule2Content = ( | ||||||
|  |       await fs.promises.readFile(submodule2ConfigPath) | ||||||
|  |     ).toString() | ||||||
|  |     const submodule2GitDir = submodule2Dir.replace(/\\/g, '/') | ||||||
|  |     expect( | ||||||
|  |       submodule2Content.indexOf(`includeIf.gitdir:${submodule2GitDir}.path`) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |     expect( | ||||||
|  |       submodule2Content.indexOf(credentialsFilePath) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Verify both host and container paths are in each submodule config | ||||||
|  |     const containerCredentialsPath = path.posix.join( | ||||||
|  |       '/github/runner_temp', | ||||||
|  |       path.basename(credentialsFilePath) | ||||||
|  |     ) | ||||||
|  |     expect( | ||||||
|  |       submodule1Content.indexOf(containerCredentialsPath) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |     expect( | ||||||
|  |       submodule2Content.indexOf(containerCredentialsPath) | ||||||
|  |     ).toBeGreaterThanOrEqual(0) | ||||||
|  |  | ||||||
|  |     // Act - ensure mock persists for removeAuth | ||||||
|  |     mockGetSubmoduleConfigPaths.mockResolvedValue([ | ||||||
|  |       submodule1ConfigPath, | ||||||
|  |       submodule2ConfigPath | ||||||
|  |     ]) | ||||||
|  |     await authHelper.removeAuth() | ||||||
|  |  | ||||||
|  |     // Assert submodule 1 includeIf entries removed | ||||||
|  |     submodule1Content = ( | ||||||
|  |       await fs.promises.readFile(submodule1ConfigPath) | ||||||
|  |     ).toString() | ||||||
|  |     expect(submodule1Content.indexOf('includeIf.gitdir:')).toBeLessThan(0) | ||||||
|  |     expect(submodule1Content.indexOf(credentialsFilePath)).toBeLessThan(0) | ||||||
|  |     expect(submodule1Content.indexOf(containerCredentialsPath)).toBeLessThan(0) | ||||||
|  |  | ||||||
|  |     // Assert submodule 2 includeIf entries removed | ||||||
|  |     submodule2Content = ( | ||||||
|  |       await fs.promises.readFile(submodule2ConfigPath) | ||||||
|  |     ).toString() | ||||||
|  |     expect(submodule2Content.indexOf('includeIf.gitdir:')).toBeLessThan(0) | ||||||
|  |     expect(submodule2Content.indexOf(credentialsFilePath)).toBeLessThan(0) | ||||||
|  |     expect(submodule2Content.indexOf(containerCredentialsPath)).toBeLessThan(0) | ||||||
|  |  | ||||||
|  |     // Assert credentials config file deleted | ||||||
|  |     credentialsFiles = (await fs.promises.readdir(runnerTemp)).filter( | ||||||
|  |       f => f.startsWith('git-credentials-') && f.endsWith('.config') | ||||||
|  |     ) | ||||||
|  |     expect(credentialsFiles.length).toBe(0) | ||||||
|  |  | ||||||
|  |     // Verify credentials file no longer exists on disk | ||||||
|  |     try { | ||||||
|  |       await fs.promises.stat(credentialsFilePath) | ||||||
|  |       throw new Error('Credentials file should have been deleted') | ||||||
|  |     } catch (err) { | ||||||
|  |       if ((err as any)?.code !== 'ENOENT') { | ||||||
|  |         throw err | ||||||
|  |       } | ||||||
|  |     } | ||||||
|   }) |   }) | ||||||
|  |  | ||||||
|   const removeGlobalConfig_removesOverride = |   const removeGlobalConfig_removesOverride = | ||||||
| @@ -701,6 +928,52 @@ describe('git-auth-helper tests', () => { | |||||||
|       } |       } | ||||||
|     } |     } | ||||||
|   }) |   }) | ||||||
|  |  | ||||||
|  |   const testCredentialsConfigPath_matchesCredentialsConfigPaths = | ||||||
|  |     'testCredentialsConfigPath matches credentials config paths' | ||||||
|  |   it(testCredentialsConfigPath_matchesCredentialsConfigPaths, async () => { | ||||||
|  |     // Arrange | ||||||
|  |     await setup(testCredentialsConfigPath_matchesCredentialsConfigPaths) | ||||||
|  |     const authHelper = gitAuthHelper.createAuthHelper(git, settings) | ||||||
|  |  | ||||||
|  |     // Get a real credentials config path | ||||||
|  |     const credentialsConfigPath = await ( | ||||||
|  |       authHelper as any | ||||||
|  |     ).getCredentialsConfigPath() | ||||||
|  |  | ||||||
|  |     // Act & Assert | ||||||
|  |     expect( | ||||||
|  |       (authHelper as any).testCredentialsConfigPath(credentialsConfigPath) | ||||||
|  |     ).toBe(true) | ||||||
|  |     expect( | ||||||
|  |       (authHelper as any).testCredentialsConfigPath( | ||||||
|  |         '/some/path/git-credentials-12345678-abcd-1234-5678-123456789012.config' | ||||||
|  |       ) | ||||||
|  |     ).toBe(true) | ||||||
|  |     expect( | ||||||
|  |       (authHelper as any).testCredentialsConfigPath( | ||||||
|  |         '/some/path/git-credentials-abcdef12-3456-7890-abcd-ef1234567890.config' | ||||||
|  |       ) | ||||||
|  |     ).toBe(true) | ||||||
|  |  | ||||||
|  |     // Test invalid paths | ||||||
|  |     expect( | ||||||
|  |       (authHelper as any).testCredentialsConfigPath( | ||||||
|  |         '/some/path/other-config.config' | ||||||
|  |       ) | ||||||
|  |     ).toBe(false) | ||||||
|  |     expect( | ||||||
|  |       (authHelper as any).testCredentialsConfigPath( | ||||||
|  |         '/some/path/git-credentials-invalid.config' | ||||||
|  |       ) | ||||||
|  |     ).toBe(false) | ||||||
|  |     expect( | ||||||
|  |       (authHelper as any).testCredentialsConfigPath( | ||||||
|  |         '/some/path/git-credentials-.config' | ||||||
|  |       ) | ||||||
|  |     ).toBe(false) | ||||||
|  |     expect((authHelper as any).testCredentialsConfigPath('')).toBe(false) | ||||||
|  |   }) | ||||||
| }) | }) | ||||||
|  |  | ||||||
| async function setup(testName: string): Promise<void> { | async function setup(testName: string): Promise<void> { | ||||||
| @@ -715,6 +988,7 @@ async function setup(testName: string): Promise<void> { | |||||||
|   await fs.promises.mkdir(tempHomedir, {recursive: true}) |   await fs.promises.mkdir(tempHomedir, {recursive: true}) | ||||||
|   process.env['RUNNER_TEMP'] = runnerTemp |   process.env['RUNNER_TEMP'] = runnerTemp | ||||||
|   process.env['HOME'] = tempHomedir |   process.env['HOME'] = tempHomedir | ||||||
|  |   process.env['GITHUB_WORKSPACE'] = workspace | ||||||
|  |  | ||||||
|   // Create git config |   // Create git config | ||||||
|   globalGitConfigPath = path.join(tempHomedir, '.gitconfig') |   globalGitConfigPath = path.join(tempHomedir, '.gitconfig') | ||||||
| @@ -727,15 +1001,26 @@ async function setup(testName: string): Promise<void> { | |||||||
|     branchDelete: jest.fn(), |     branchDelete: jest.fn(), | ||||||
|     branchExists: jest.fn(), |     branchExists: jest.fn(), | ||||||
|     branchList: jest.fn(), |     branchList: jest.fn(), | ||||||
|  |     disableSparseCheckout: jest.fn(), | ||||||
|     sparseCheckout: jest.fn(), |     sparseCheckout: jest.fn(), | ||||||
|     sparseCheckoutNonConeMode: jest.fn(), |     sparseCheckoutNonConeMode: jest.fn(), | ||||||
|     checkout: jest.fn(), |     checkout: jest.fn(), | ||||||
|     checkoutDetach: jest.fn(), |     checkoutDetach: jest.fn(), | ||||||
|     config: jest.fn( |     config: jest.fn( | ||||||
|       async (key: string, value: string, globalConfig?: boolean) => { |       async ( | ||||||
|         const configPath = globalConfig |         key: string, | ||||||
|           ? path.join(git.env['HOME'] || tempHomedir, '.gitconfig') |         value: string, | ||||||
|           : localGitConfigPath |         globalConfig?: boolean, | ||||||
|  |         add?: boolean, | ||||||
|  |         configFile?: string | ||||||
|  |       ) => { | ||||||
|  |         const configPath = | ||||||
|  |           configFile || | ||||||
|  |           (globalConfig | ||||||
|  |             ? path.join(git.env['HOME'] || tempHomedir, '.gitconfig') | ||||||
|  |             : localGitConfigPath) | ||||||
|  |         // Ensure directory exists | ||||||
|  |         await fs.promises.mkdir(path.dirname(configPath), {recursive: true}) | ||||||
|         await fs.promises.appendFile(configPath, `\n${key} ${value}`) |         await fs.promises.appendFile(configPath, `\n${key} ${value}`) | ||||||
|       } |       } | ||||||
|     ), |     ), | ||||||
| @@ -755,6 +1040,7 @@ async function setup(testName: string): Promise<void> { | |||||||
|     env: {}, |     env: {}, | ||||||
|     fetch: jest.fn(), |     fetch: jest.fn(), | ||||||
|     getDefaultBranch: jest.fn(), |     getDefaultBranch: jest.fn(), | ||||||
|  |     getSubmoduleConfigPaths: jest.fn(async () => []), | ||||||
|     getWorkingDirectory: jest.fn(() => workspace), |     getWorkingDirectory: jest.fn(() => workspace), | ||||||
|     init: jest.fn(), |     init: jest.fn(), | ||||||
|     isDetached: jest.fn(), |     isDetached: jest.fn(), | ||||||
| @@ -793,9 +1079,74 @@ async function setup(testName: string): Promise<void> { | |||||||
|         return true |         return true | ||||||
|       } |       } | ||||||
|     ), |     ), | ||||||
|  |     tryConfigUnsetValue: jest.fn( | ||||||
|  |       async ( | ||||||
|  |         key: string, | ||||||
|  |         value: string, | ||||||
|  |         globalConfig?: boolean, | ||||||
|  |         configPath?: string | ||||||
|  |       ): Promise<boolean> => { | ||||||
|  |         const targetConfigPath = | ||||||
|  |           configPath || | ||||||
|  |           (globalConfig | ||||||
|  |             ? path.join(git.env['HOME'] || tempHomedir, '.gitconfig') | ||||||
|  |             : localGitConfigPath) | ||||||
|  |         let content = await fs.promises.readFile(targetConfigPath) | ||||||
|  |         let lines = content | ||||||
|  |           .toString() | ||||||
|  |           .split('\n') | ||||||
|  |           .filter(x => x) | ||||||
|  |           .filter(x => !(x.startsWith(key) && x.includes(value))) | ||||||
|  |         await fs.promises.writeFile(targetConfigPath, lines.join('\n')) | ||||||
|  |         return true | ||||||
|  |       } | ||||||
|  |     ), | ||||||
|     tryDisableAutomaticGarbageCollection: jest.fn(), |     tryDisableAutomaticGarbageCollection: jest.fn(), | ||||||
|     tryGetFetchUrl: jest.fn(), |     tryGetFetchUrl: jest.fn(), | ||||||
|     tryReset: jest.fn() |     tryGetConfigValues: jest.fn( | ||||||
|  |       async ( | ||||||
|  |         key: string, | ||||||
|  |         globalConfig?: boolean, | ||||||
|  |         configPath?: string | ||||||
|  |       ): Promise<string[]> => { | ||||||
|  |         const targetConfigPath = | ||||||
|  |           configPath || | ||||||
|  |           (globalConfig | ||||||
|  |             ? path.join(git.env['HOME'] || tempHomedir, '.gitconfig') | ||||||
|  |             : localGitConfigPath) | ||||||
|  |         const content = await fs.promises.readFile(targetConfigPath) | ||||||
|  |         const lines = content | ||||||
|  |           .toString() | ||||||
|  |           .split('\n') | ||||||
|  |           .filter(x => x && x.startsWith(key)) | ||||||
|  |           .map(x => x.substring(key.length).trim()) | ||||||
|  |         return lines | ||||||
|  |       } | ||||||
|  |     ), | ||||||
|  |     tryGetConfigKeys: jest.fn( | ||||||
|  |       async ( | ||||||
|  |         pattern: string, | ||||||
|  |         globalConfig?: boolean, | ||||||
|  |         configPath?: string | ||||||
|  |       ): Promise<string[]> => { | ||||||
|  |         const targetConfigPath = | ||||||
|  |           configPath || | ||||||
|  |           (globalConfig | ||||||
|  |             ? path.join(git.env['HOME'] || tempHomedir, '.gitconfig') | ||||||
|  |             : localGitConfigPath) | ||||||
|  |         const content = await fs.promises.readFile(targetConfigPath) | ||||||
|  |         const lines = content | ||||||
|  |           .toString() | ||||||
|  |           .split('\n') | ||||||
|  |           .filter(x => x) | ||||||
|  |         const keys = lines | ||||||
|  |           .filter(x => new RegExp(pattern).test(x.split(' ')[0])) | ||||||
|  |           .map(x => x.split(' ')[0]) | ||||||
|  |         return [...new Set(keys)] // Remove duplicates | ||||||
|  |       } | ||||||
|  |     ), | ||||||
|  |     tryReset: jest.fn(), | ||||||
|  |     version: jest.fn() | ||||||
|   } |   } | ||||||
|  |  | ||||||
|   settings = { |   settings = { | ||||||
| @@ -819,6 +1170,7 @@ async function setup(testName: string): Promise<void> { | |||||||
|     sshKey: sshPath ? 'some ssh private key' : '', |     sshKey: sshPath ? 'some ssh private key' : '', | ||||||
|     sshKnownHosts: '', |     sshKnownHosts: '', | ||||||
|     sshStrict: true, |     sshStrict: true, | ||||||
|  |     sshUser: '', | ||||||
|     workflowOrganizationId: 123456, |     workflowOrganizationId: 123456, | ||||||
|     setSafeDirectory: true, |     setSafeDirectory: true, | ||||||
|     githubServerUrl: githubServerUrl |     githubServerUrl: githubServerUrl | ||||||
| @@ -827,6 +1179,7 @@ async function setup(testName: string): Promise<void> { | |||||||
|  |  | ||||||
| async function getActualSshKeyPath(): Promise<string> { | async function getActualSshKeyPath(): Promise<string> { | ||||||
|   let actualTempFiles = (await fs.promises.readdir(runnerTemp)) |   let actualTempFiles = (await fs.promises.readdir(runnerTemp)) | ||||||
|  |     .filter(x => !x.startsWith('git-credentials-')) // Exclude credentials config file | ||||||
|     .sort() |     .sort() | ||||||
|     .map(x => path.join(runnerTemp, x)) |     .map(x => path.join(runnerTemp, x)) | ||||||
|   if (actualTempFiles.length === 0) { |   if (actualTempFiles.length === 0) { | ||||||
| @@ -840,6 +1193,7 @@ async function getActualSshKeyPath(): Promise<string> { | |||||||
|  |  | ||||||
| async function getActualSshKnownHostsPath(): Promise<string> { | async function getActualSshKnownHostsPath(): Promise<string> { | ||||||
|   let actualTempFiles = (await fs.promises.readdir(runnerTemp)) |   let actualTempFiles = (await fs.promises.readdir(runnerTemp)) | ||||||
|  |     .filter(x => !x.startsWith('git-credentials-')) // Exclude credentials config file | ||||||
|     .sort() |     .sort() | ||||||
|     .map(x => path.join(runnerTemp, x)) |     .map(x => path.join(runnerTemp, x)) | ||||||
|   if (actualTempFiles.length === 0) { |   if (actualTempFiles.length === 0) { | ||||||
|   | |||||||
| @@ -462,6 +462,7 @@ async function setup(testName: string): Promise<void> { | |||||||
|     branchList: jest.fn(async () => { |     branchList: jest.fn(async () => { | ||||||
|       return [] |       return [] | ||||||
|     }), |     }), | ||||||
|  |     disableSparseCheckout: jest.fn(), | ||||||
|     sparseCheckout: jest.fn(), |     sparseCheckout: jest.fn(), | ||||||
|     sparseCheckoutNonConeMode: jest.fn(), |     sparseCheckoutNonConeMode: jest.fn(), | ||||||
|     checkout: jest.fn(), |     checkout: jest.fn(), | ||||||
| @@ -470,6 +471,7 @@ async function setup(testName: string): Promise<void> { | |||||||
|     configExists: jest.fn(), |     configExists: jest.fn(), | ||||||
|     fetch: jest.fn(), |     fetch: jest.fn(), | ||||||
|     getDefaultBranch: jest.fn(), |     getDefaultBranch: jest.fn(), | ||||||
|  |     getSubmoduleConfigPaths: jest.fn(async () => []), | ||||||
|     getWorkingDirectory: jest.fn(() => repositoryPath), |     getWorkingDirectory: jest.fn(() => repositoryPath), | ||||||
|     init: jest.fn(), |     init: jest.fn(), | ||||||
|     isDetached: jest.fn(), |     isDetached: jest.fn(), | ||||||
| @@ -492,14 +494,18 @@ async function setup(testName: string): Promise<void> { | |||||||
|       return true |       return true | ||||||
|     }), |     }), | ||||||
|     tryConfigUnset: jest.fn(), |     tryConfigUnset: jest.fn(), | ||||||
|  |     tryConfigUnsetValue: jest.fn(), | ||||||
|     tryDisableAutomaticGarbageCollection: jest.fn(), |     tryDisableAutomaticGarbageCollection: jest.fn(), | ||||||
|     tryGetFetchUrl: jest.fn(async () => { |     tryGetFetchUrl: jest.fn(async () => { | ||||||
|       // Sanity check - this function shouldn't be called when the .git directory doesn't exist |       // Sanity check - this function shouldn't be called when the .git directory doesn't exist | ||||||
|       await fs.promises.stat(path.join(repositoryPath, '.git')) |       await fs.promises.stat(path.join(repositoryPath, '.git')) | ||||||
|       return repositoryUrl |       return repositoryUrl | ||||||
|     }), |     }), | ||||||
|  |     tryGetConfigValues: jest.fn(), | ||||||
|  |     tryGetConfigKeys: jest.fn(), | ||||||
|     tryReset: jest.fn(async () => { |     tryReset: jest.fn(async () => { | ||||||
|       return true |       return true | ||||||
|     }) |     }), | ||||||
|  |     version: jest.fn() | ||||||
|   } |   } | ||||||
| } | } | ||||||
|   | |||||||
| @@ -1,4 +1,5 @@ | |||||||
| import {GitVersion} from '../lib/git-version' | import {GitVersion} from '../src/git-version' | ||||||
|  | import {MinimumGitSparseCheckoutVersion} from '../src/git-command-manager' | ||||||
|  |  | ||||||
| describe('git-version tests', () => { | describe('git-version tests', () => { | ||||||
|   it('basics', async () => { |   it('basics', async () => { | ||||||
| @@ -42,4 +43,44 @@ describe('git-version tests', () => { | |||||||
|     expect(version.checkMinimum(new GitVersion('5.1'))).toBeFalsy() |     expect(version.checkMinimum(new GitVersion('5.1'))).toBeFalsy() | ||||||
|     expect(version.checkMinimum(new GitVersion('5.1.2'))).toBeFalsy() |     expect(version.checkMinimum(new GitVersion('5.1.2'))).toBeFalsy() | ||||||
|   }) |   }) | ||||||
|  |  | ||||||
|  |   it('sparse checkout', async () => { | ||||||
|  |     const minSparseVer = MinimumGitSparseCheckoutVersion | ||||||
|  |     expect(new GitVersion('1.0').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('1.99').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.0').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.24').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.24.0').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.24.9').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.25').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.25.0').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.25.1').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.25.9').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.26').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.26.0').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.26.1').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.26.9').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.27').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.27.0').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.27.1').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     expect(new GitVersion('2.27.9').checkMinimum(minSparseVer)).toBeFalsy() | ||||||
|  |     //                             /--------------------------------------- | ||||||
|  |     //         ^^^ before         /         after vvv | ||||||
|  |     // --------------------------/ | ||||||
|  |     expect(new GitVersion('2.28').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.28.0').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.28.1').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.28.9').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.29').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.29.0').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.29.1').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.29.9').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('2.99').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('3.0').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('3.99').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('4.0').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('4.99').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('5.0').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |     expect(new GitVersion('5.99').checkMinimum(minSparseVer)).toBeTruthy() | ||||||
|  |   }) | ||||||
| }) | }) | ||||||
|   | |||||||
| @@ -67,6 +67,26 @@ describe('ref-helper tests', () => { | |||||||
|     expect(checkoutInfo.startPoint).toBeFalsy() |     expect(checkoutInfo.startPoint).toBeFalsy() | ||||||
|   }) |   }) | ||||||
|  |  | ||||||
|  |   it('getCheckoutInfo refs/', async () => { | ||||||
|  |     const checkoutInfo = await refHelper.getCheckoutInfo( | ||||||
|  |       git, | ||||||
|  |       'refs/gh/queue/main/pr-123', | ||||||
|  |       commit | ||||||
|  |     ) | ||||||
|  |     expect(checkoutInfo.ref).toBe(commit) | ||||||
|  |     expect(checkoutInfo.startPoint).toBeFalsy() | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   it('getCheckoutInfo refs/ without commit', async () => { | ||||||
|  |     const checkoutInfo = await refHelper.getCheckoutInfo( | ||||||
|  |       git, | ||||||
|  |       'refs/non-standard-ref', | ||||||
|  |       '' | ||||||
|  |     ) | ||||||
|  |     expect(checkoutInfo.ref).toBe('refs/non-standard-ref') | ||||||
|  |     expect(checkoutInfo.startPoint).toBeFalsy() | ||||||
|  |   }) | ||||||
|  |  | ||||||
|   it('getCheckoutInfo unqualified branch only', async () => { |   it('getCheckoutInfo unqualified branch only', async () => { | ||||||
|     git.branchExists = jest.fn(async (remote: boolean, pattern: string) => { |     git.branchExists = jest.fn(async (remote: boolean, pattern: string) => { | ||||||
|       return true |       return true | ||||||
|   | |||||||
							
								
								
									
										92
									
								
								__test__/url-helper.test.ts
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										92
									
								
								__test__/url-helper.test.ts
									
									
									
									
									
										Normal file
									
								
							| @@ -0,0 +1,92 @@ | |||||||
|  | import * as urlHelper from '../src/url-helper' | ||||||
|  |  | ||||||
|  | describe('getServerUrl tests', () => { | ||||||
|  |   it('basics', async () => { | ||||||
|  |     // Note that URL::toString will append a trailing / when passed just a domain name ... | ||||||
|  |     expect(urlHelper.getServerUrl().toString()).toBe('https://github.com/') | ||||||
|  |     expect(urlHelper.getServerUrl(' ').toString()).toBe('https://github.com/') | ||||||
|  |     expect(urlHelper.getServerUrl('   ').toString()).toBe('https://github.com/') | ||||||
|  |     expect(urlHelper.getServerUrl('http://contoso.com').toString()).toBe( | ||||||
|  |       'http://contoso.com/' | ||||||
|  |     ) | ||||||
|  |     expect(urlHelper.getServerUrl('https://contoso.com').toString()).toBe( | ||||||
|  |       'https://contoso.com/' | ||||||
|  |     ) | ||||||
|  |     expect(urlHelper.getServerUrl('https://contoso.com/').toString()).toBe( | ||||||
|  |       'https://contoso.com/' | ||||||
|  |     ) | ||||||
|  |  | ||||||
|  |     // ... but can't make that same assumption when passed an URL that includes some deeper path. | ||||||
|  |     expect(urlHelper.getServerUrl('https://contoso.com/a/b').toString()).toBe( | ||||||
|  |       'https://contoso.com/a/b' | ||||||
|  |     ) | ||||||
|  |   }) | ||||||
|  | }) | ||||||
|  |  | ||||||
|  | describe('isGhes tests', () => { | ||||||
|  |   const pristineEnv = process.env | ||||||
|  |  | ||||||
|  |   beforeEach(() => { | ||||||
|  |     jest.resetModules() | ||||||
|  |     process.env = {...pristineEnv} | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   afterAll(() => { | ||||||
|  |     process.env = pristineEnv | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   it('basics', async () => { | ||||||
|  |     delete process.env['GITHUB_SERVER_URL'] | ||||||
|  |     expect(urlHelper.isGhes()).toBeFalsy() | ||||||
|  |     expect(urlHelper.isGhes('https://github.com')).toBeFalsy() | ||||||
|  |     expect(urlHelper.isGhes('https://contoso.ghe.com')).toBeFalsy() | ||||||
|  |     expect(urlHelper.isGhes('https://test.github.localhost')).toBeFalsy() | ||||||
|  |     expect(urlHelper.isGhes('https://src.onpremise.fabrikam.com')).toBeTruthy() | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   it('returns false when the GITHUB_SERVER_URL environment variable is not defined', async () => { | ||||||
|  |     delete process.env['GITHUB_SERVER_URL'] | ||||||
|  |     expect(urlHelper.isGhes()).toBeFalsy() | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   it('returns false when the GITHUB_SERVER_URL environment variable is set to github.com', async () => { | ||||||
|  |     process.env['GITHUB_SERVER_URL'] = 'https://github.com' | ||||||
|  |     expect(urlHelper.isGhes()).toBeFalsy() | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   it('returns false when the GITHUB_SERVER_URL environment variable is set to a GitHub Enterprise Cloud-style URL', async () => { | ||||||
|  |     process.env['GITHUB_SERVER_URL'] = 'https://contoso.ghe.com' | ||||||
|  |     expect(urlHelper.isGhes()).toBeFalsy() | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   it('returns false when the GITHUB_SERVER_URL environment variable has a .localhost suffix', async () => { | ||||||
|  |     process.env['GITHUB_SERVER_URL'] = 'https://mock-github.localhost' | ||||||
|  |     expect(urlHelper.isGhes()).toBeFalsy() | ||||||
|  |   }) | ||||||
|  |  | ||||||
|  |   it('returns true when the GITHUB_SERVER_URL environment variable is set to some other URL', async () => { | ||||||
|  |     process.env['GITHUB_SERVER_URL'] = 'https://src.onpremise.fabrikam.com' | ||||||
|  |     expect(urlHelper.isGhes()).toBeTruthy() | ||||||
|  |   }) | ||||||
|  | }) | ||||||
|  |  | ||||||
|  | describe('getServerApiUrl tests', () => { | ||||||
|  |   it('basics', async () => { | ||||||
|  |     expect(urlHelper.getServerApiUrl()).toBe('https://api.github.com') | ||||||
|  |     expect(urlHelper.getServerApiUrl('https://github.com')).toBe( | ||||||
|  |       'https://api.github.com' | ||||||
|  |     ) | ||||||
|  |     expect(urlHelper.getServerApiUrl('https://GitHub.com')).toBe( | ||||||
|  |       'https://api.github.com' | ||||||
|  |     ) | ||||||
|  |     expect(urlHelper.getServerApiUrl('https://contoso.ghe.com')).toBe( | ||||||
|  |       'https://api.contoso.ghe.com' | ||||||
|  |     ) | ||||||
|  |     expect(urlHelper.getServerApiUrl('https://fabrikam.GHE.COM')).toBe( | ||||||
|  |       'https://api.fabrikam.ghe.com' | ||||||
|  |     ) | ||||||
|  |     expect( | ||||||
|  |       urlHelper.getServerApiUrl('https://src.onpremise.fabrikam.com') | ||||||
|  |     ).toBe('https://src.onpremise.fabrikam.com/api/v3') | ||||||
|  |   }) | ||||||
|  | }) | ||||||
| @@ -18,6 +18,20 @@ else | |||||||
|     exit 1 |     exit 1 | ||||||
|   fi |   fi | ||||||
|  |  | ||||||
|  |   # Verify that sparse-checkout is disabled. | ||||||
|  |   SPARSE_CHECKOUT_ENABLED=$(git -C ./basic config --local --get-all core.sparseCheckout) | ||||||
|  |   if [ "$SPARSE_CHECKOUT_ENABLED" != "" ]; then | ||||||
|  |     echo "Expected sparse-checkout to be disabled (discovered: $SPARSE_CHECKOUT_ENABLED)" | ||||||
|  |     exit 1 | ||||||
|  |   fi | ||||||
|  |  | ||||||
|  |   # Verify git configuration shows worktreeConfig is effectively disabled | ||||||
|  |   WORKTREE_CONFIG_ENABLED=$(git -C ./basic config --local --get-all extensions.worktreeConfig) | ||||||
|  |   if [[ "$WORKTREE_CONFIG_ENABLED" != "" ]]; then | ||||||
|  |     echo "Expected extensions.worktreeConfig (boolean) to be disabled in git config.  This could be an artifact of sparse checkout functionality." | ||||||
|  |     exit 1 | ||||||
|  |   fi | ||||||
|  |  | ||||||
|   # Verify auth token |   # Verify auth token | ||||||
|   cd basic |   cd basic | ||||||
|   git fetch --no-tags --depth=1 origin +refs/heads/main:refs/remotes/origin/main |   git fetch --no-tags --depth=1 origin +refs/heads/main:refs/remotes/origin/main | ||||||
|   | |||||||
| @@ -17,7 +17,7 @@ fi | |||||||
|  |  | ||||||
| echo "Testing persisted credential" | echo "Testing persisted credential" | ||||||
| pushd ./submodules-recursive/submodule-level-1/submodule-level-2 | pushd ./submodules-recursive/submodule-level-1/submodule-level-2 | ||||||
| git config --local --name-only --get-regexp http.+extraheader && git fetch | git config --local --includes --name-only --get-regexp http.+extraheader && git fetch | ||||||
| if [ "$?" != "0" ]; then | if [ "$?" != "0" ]; then | ||||||
|     echo "Failed to validate persisted credential" |     echo "Failed to validate persisted credential" | ||||||
|     popd |     popd | ||||||
|   | |||||||
| @@ -17,7 +17,7 @@ fi | |||||||
|  |  | ||||||
| echo "Testing persisted credential" | echo "Testing persisted credential" | ||||||
| pushd ./submodules-true/submodule-level-1 | pushd ./submodules-true/submodule-level-1 | ||||||
| git config --local --name-only --get-regexp http.+extraheader && git fetch | git config --local --includes --name-only --get-regexp http.+extraheader && git fetch | ||||||
| if [ "$?" != "0" ]; then | if [ "$?" != "0" ]; then | ||||||
|     echo "Failed to validate persisted credential" |     echo "Failed to validate persisted credential" | ||||||
|     popd |     popd | ||||||
|   | |||||||
							
								
								
									
										11
									
								
								action.yml
									
									
									
									
									
								
							
							
						
						
									
										11
									
								
								action.yml
									
									
									
									
									
								
							| @@ -45,6 +45,10 @@ inputs: | |||||||
|       and `CheckHostIP=no` to the SSH command line. Use the input `ssh-known-hosts` to |       and `CheckHostIP=no` to the SSH command line. Use the input `ssh-known-hosts` to | ||||||
|       configure additional hosts. |       configure additional hosts. | ||||||
|     default: true |     default: true | ||||||
|  |   ssh-user: | ||||||
|  |     description: > | ||||||
|  |       The user to use when connecting to the remote SSH host. By default 'git' is used. | ||||||
|  |     default: git | ||||||
|   persist-credentials: |   persist-credentials: | ||||||
|     description: 'Whether to configure the token or SSH key with the local git config' |     description: 'Whether to configure the token or SSH key with the local git config' | ||||||
|     default: true |     default: true | ||||||
| @@ -94,7 +98,12 @@ inputs: | |||||||
|   github-server-url: |   github-server-url: | ||||||
|     description: The base URL for the GitHub instance that you are trying to clone from, will use environment defaults to fetch from the same instance that the workflow is running from unless specified. Example URLs are https://github.com or https://my-ghes-server.example.com |     description: The base URL for the GitHub instance that you are trying to clone from, will use environment defaults to fetch from the same instance that the workflow is running from unless specified. Example URLs are https://github.com or https://my-ghes-server.example.com | ||||||
|     required: false |     required: false | ||||||
|  | outputs: | ||||||
|  |   ref: | ||||||
|  |     description: 'The branch, tag or SHA that was checked out' | ||||||
|  |   commit: | ||||||
|  |     description: 'The commit SHA that was checked out' | ||||||
| runs: | runs: | ||||||
|   using: node20 |   using: node24 | ||||||
|   main: dist/index.js |   main: dist/index.js | ||||||
|   post: dist/index.js |   post: dist/index.js | ||||||
|   | |||||||
										
											Binary file not shown.
										
									
								
							
										
											Binary file not shown.
										
									
								
							
							
								
								
									
										18708
									
								
								dist/index.js
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										18708
									
								
								dist/index.js
									
									
									
									
										vendored
									
									
								
							
										
											
												File diff suppressed because one or more lines are too long
											
										
									
								
							
							
								
								
									
										12
									
								
								images/test-ubuntu-git.Dockerfile
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										12
									
								
								images/test-ubuntu-git.Dockerfile
									
									
									
									
									
										Normal file
									
								
							| @@ -0,0 +1,12 @@ | |||||||
|  | # Defines the test-ubuntu-git Container Image. | ||||||
|  | # Consumed by actions/checkout CI/CD validation workflows. | ||||||
|  |  | ||||||
|  | FROM ubuntu:latest | ||||||
|  |  | ||||||
|  | RUN apt update | ||||||
|  | RUN apt install -y git | ||||||
|  |  | ||||||
|  | LABEL org.opencontainers.image.title="Ubuntu + git (validation image)" | ||||||
|  | LABEL org.opencontainers.image.description="Ubuntu image with git pre-installed. Intended primarily for testing `actions/checkout` during CI/CD workflows." | ||||||
|  | LABEL org.opencontainers.image.documentation="https://github.com/actions/checkout/tree/main/images/test-ubuntu-git.md" | ||||||
|  | LABEL org.opencontainers.image.licenses=MIT | ||||||
							
								
								
									
										15
									
								
								images/test-ubuntu-git.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										15
									
								
								images/test-ubuntu-git.md
									
									
									
									
									
										Normal file
									
								
							| @@ -0,0 +1,15 @@ | |||||||
|  | # `test-ubuntu-git` Container Image | ||||||
|  |  | ||||||
|  | [](https://github.com/actions/checkout/actions/workflows/update-test-ubuntu-git.yml) | ||||||
|  |  | ||||||
|  | ## Purpose | ||||||
|  |  | ||||||
|  | `test-ubuntu-git` is a container image hosted on the GitHub Container Registry, `ghcr.io`.   | ||||||
|  |  | ||||||
|  | It is intended primarily for testing the [`actions/checkout` repository](https://github.com/actions/checkout) as part of `actions/checkout`'s CI/CD workflows. | ||||||
|  |  | ||||||
|  | The composition of `test-ubuntu-git` is intentionally minimal.  It is comprised of [git](https://git-scm.com/) installed on top of a [base-level ubuntu image](https://hub.docker.com/_/ubuntu/tags). | ||||||
|  |  | ||||||
|  | # License | ||||||
|  |  | ||||||
|  | `test-ubuntu-git` is released under the [MIT License](/LICENSE). | ||||||
| @@ -1,5 +1,6 @@ | |||||||
| module.exports = { | module.exports = { | ||||||
|   clearMocks: true, |   clearMocks: true, | ||||||
|  |   fakeTimers: {}, | ||||||
|   moduleFileExtensions: ['js', 'ts'], |   moduleFileExtensions: ['js', 'ts'], | ||||||
|   testEnvironment: 'node', |   testEnvironment: 'node', | ||||||
|   testMatch: ['**/*.test.ts'], |   testMatch: ['**/*.test.ts'], | ||||||
|   | |||||||
							
								
								
									
										8931
									
								
								package-lock.json
									
									
									
										generated
									
									
									
								
							
							
						
						
									
										8931
									
								
								package-lock.json
									
									
									
										generated
									
									
									
								
							
										
											
												File diff suppressed because it is too large
												Load Diff
											
										
									
								
							
							
								
								
									
										32
									
								
								package.json
									
									
									
									
									
								
							
							
						
						
									
										32
									
								
								package.json
									
									
									
									
									
								
							| @@ -1,6 +1,6 @@ | |||||||
| { | { | ||||||
|   "name": "checkout", |   "name": "checkout", | ||||||
|   "version": "4.1.0", |   "version": "5.0.0", | ||||||
|   "description": "checkout action", |   "description": "checkout action", | ||||||
|   "main": "lib/main.js", |   "main": "lib/main.js", | ||||||
|   "scripts": { |   "scripts": { | ||||||
| @@ -30,26 +30,26 @@ | |||||||
|   "dependencies": { |   "dependencies": { | ||||||
|     "@actions/core": "^1.10.1", |     "@actions/core": "^1.10.1", | ||||||
|     "@actions/exec": "^1.1.1", |     "@actions/exec": "^1.1.1", | ||||||
|     "@actions/github": "file:actions-github-6.0.2.tgz", |     "@actions/github": "^6.0.0", | ||||||
|     "@actions/io": "^1.1.3", |     "@actions/io": "^1.1.3", | ||||||
|     "@actions/tool-cache": "^2.0.1", |     "@actions/tool-cache": "^2.0.1", | ||||||
|     "uuid": "^3.3.3" |     "uuid": "^9.0.1" | ||||||
|   }, |   }, | ||||||
|   "devDependencies": { |   "devDependencies": { | ||||||
|     "@types/jest": "^29.5.5", |     "@types/jest": "^29.5.12", | ||||||
|     "@types/node": "^20.8.2", |     "@types/node": "^24.1.0", | ||||||
|     "@types/uuid": "^3.4.6", |     "@types/uuid": "^9.0.8", | ||||||
|     "@typescript-eslint/eslint-plugin": "^6.7.4", |     "@typescript-eslint/eslint-plugin": "^7.9.0", | ||||||
|     "@typescript-eslint/parser": "^6.7.4", |     "@typescript-eslint/parser": "^7.9.0", | ||||||
|     "@vercel/ncc": "^0.38.0", |     "@vercel/ncc": "^0.38.1", | ||||||
|     "eslint": "^8.50.0", |     "eslint": "^8.57.0", | ||||||
|     "eslint-plugin-github": "^4.10.1", |     "eslint-plugin-github": "^4.10.2", | ||||||
|     "eslint-plugin-jest": "^27.4.2", |     "eslint-plugin-jest": "^28.8.2", | ||||||
|     "jest": "^29.7.0", |     "jest": "^29.7.0", | ||||||
|     "jest-circus": "^29.7.0", |     "jest-circus": "^29.7.0", | ||||||
|     "js-yaml": "^3.13.1", |     "js-yaml": "^4.1.0", | ||||||
|     "prettier": "^3.0.3", |     "prettier": "^3.3.3", | ||||||
|     "ts-jest": "^29.1.1", |     "ts-jest": "^29.2.5", | ||||||
|     "typescript": "^5.2.2" |     "typescript": "^5.5.4" | ||||||
|   } |   } | ||||||
| } | } | ||||||
|   | |||||||
| @@ -8,7 +8,7 @@ import * as path from 'path' | |||||||
| import * as regexpHelper from './regexp-helper' | import * as regexpHelper from './regexp-helper' | ||||||
| import * as stateHelper from './state-helper' | import * as stateHelper from './state-helper' | ||||||
| import * as urlHelper from './url-helper' | import * as urlHelper from './url-helper' | ||||||
| import {default as uuid} from 'uuid/v4' | import {v4 as uuid} from 'uuid' | ||||||
| import {IGitCommandManager} from './git-command-manager' | import {IGitCommandManager} from './git-command-manager' | ||||||
| import {IGitSourceSettings} from './git-source-settings' | import {IGitSourceSettings} from './git-source-settings' | ||||||
|  |  | ||||||
| @@ -43,6 +43,7 @@ class GitAuthHelper { | |||||||
|   private sshKeyPath = '' |   private sshKeyPath = '' | ||||||
|   private sshKnownHostsPath = '' |   private sshKnownHostsPath = '' | ||||||
|   private temporaryHomePath = '' |   private temporaryHomePath = '' | ||||||
|  |   private credentialsConfigPath = '' // Path to separate credentials config file in RUNNER_TEMP | ||||||
|  |  | ||||||
|   constructor( |   constructor( | ||||||
|     gitCommandManager: IGitCommandManager, |     gitCommandManager: IGitCommandManager, | ||||||
| @@ -126,16 +127,21 @@ class GitAuthHelper { | |||||||
|  |  | ||||||
|   async configureGlobalAuth(): Promise<void> { |   async configureGlobalAuth(): Promise<void> { | ||||||
|     // 'configureTempGlobalConfig' noops if already set, just returns the path |     // 'configureTempGlobalConfig' noops if already set, just returns the path | ||||||
|     const newGitConfigPath = await this.configureTempGlobalConfig() |     await this.configureTempGlobalConfig() | ||||||
|     try { |     try { | ||||||
|       // Configure the token |       // Configure the token | ||||||
|       await this.configureToken(newGitConfigPath, true) |       await this.configureToken(true) | ||||||
|  |  | ||||||
|       // Configure HTTPS instead of SSH |       // Configure HTTPS instead of SSH | ||||||
|       await this.git.tryConfigUnset(this.insteadOfKey, true) |       await this.git.tryConfigUnset(this.insteadOfKey, true) | ||||||
|       if (!this.settings.sshKey) { |       if (!this.settings.sshKey) { | ||||||
|         for (const insteadOfValue of this.insteadOfValues) { |         for (const insteadOfValue of this.insteadOfValues) { | ||||||
|           await this.git.config(this.insteadOfKey, insteadOfValue, true, true) |           await this.git.config( | ||||||
|  |             this.insteadOfKey, | ||||||
|  |             insteadOfValue, | ||||||
|  |             true, // globalConfig? | ||||||
|  |             true // add? | ||||||
|  |           ) | ||||||
|         } |         } | ||||||
|       } |       } | ||||||
|     } catch (err) { |     } catch (err) { | ||||||
| @@ -150,24 +156,60 @@ class GitAuthHelper { | |||||||
|  |  | ||||||
|   async configureSubmoduleAuth(): Promise<void> { |   async configureSubmoduleAuth(): Promise<void> { | ||||||
|     // Remove possible previous HTTPS instead of SSH |     // Remove possible previous HTTPS instead of SSH | ||||||
|     await this.removeGitConfig(this.insteadOfKey, true) |     await this.removeSubmoduleGitConfig(this.insteadOfKey) | ||||||
|  |  | ||||||
|     if (this.settings.persistCredentials) { |     if (this.settings.persistCredentials) { | ||||||
|       // Configure a placeholder value. This approach avoids the credential being captured |       // Get the credentials config file path in RUNNER_TEMP | ||||||
|       // by process creation audit events, which are commonly logged. For more information, |       const credentialsConfigPath = this.getCredentialsConfigPath() | ||||||
|       // refer to https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/manage/component-updates/command-line-process-auditing |  | ||||||
|       const output = await this.git.submoduleForeach( |       // Container credentials config path | ||||||
|         // wrap the pipeline in quotes to make sure it's handled properly by submoduleForeach, rather than just the first part of the pipeline |       const containerCredentialsPath = path.posix.join( | ||||||
|         `sh -c "git config --local '${this.tokenConfigKey}' '${this.tokenPlaceholderConfigValue}' && git config --local --show-origin --name-only --get-regexp remote.origin.url"`, |         '/github/runner_temp', | ||||||
|  |         path.basename(credentialsConfigPath) | ||||||
|  |       ) | ||||||
|  |  | ||||||
|  |       // Get submodule config file paths. | ||||||
|  |       const configPaths = await this.git.getSubmoduleConfigPaths( | ||||||
|         this.settings.nestedSubmodules |         this.settings.nestedSubmodules | ||||||
|       ) |       ) | ||||||
|  |  | ||||||
|       // Replace the placeholder |       // For each submodule, configure includeIf entries pointing to the shared credentials file. | ||||||
|       const configPaths: string[] = |       // Configure both host and container paths to support Docker container actions. | ||||||
|         output.match(/(?<=(^|\n)file:)[^\t]+(?=\tremote\.origin\.url)/g) || [] |  | ||||||
|       for (const configPath of configPaths) { |       for (const configPath of configPaths) { | ||||||
|         core.debug(`Replacing token placeholder in '${configPath}'`) |         // Submodule Git directory | ||||||
|         await this.replaceTokenPlaceholder(configPath) |         let submoduleGitDir = path.dirname(configPath) // The config file is at .git/modules/submodule-name/config | ||||||
|  |         submoduleGitDir = submoduleGitDir.replace(/\\/g, '/') // Use forward slashes, even on Windows | ||||||
|  |  | ||||||
|  |         // Configure host includeIf | ||||||
|  |         await this.git.config( | ||||||
|  |           `includeIf.gitdir:${submoduleGitDir}.path`, | ||||||
|  |           credentialsConfigPath, | ||||||
|  |           false, // globalConfig? | ||||||
|  |           false, // add? | ||||||
|  |           configPath | ||||||
|  |         ) | ||||||
|  |  | ||||||
|  |         // Container submodule git directory | ||||||
|  |         const githubWorkspace = process.env['GITHUB_WORKSPACE'] | ||||||
|  |         assert.ok(githubWorkspace, 'GITHUB_WORKSPACE is not defined') | ||||||
|  |         let relativeSubmoduleGitDir = path.relative( | ||||||
|  |           githubWorkspace, | ||||||
|  |           submoduleGitDir | ||||||
|  |         ) | ||||||
|  |         relativeSubmoduleGitDir = relativeSubmoduleGitDir.replace(/\\/g, '/') // Use forward slashes, even on Windows | ||||||
|  |         const containerSubmoduleGitDir = path.posix.join( | ||||||
|  |           '/github/workspace', | ||||||
|  |           relativeSubmoduleGitDir | ||||||
|  |         ) | ||||||
|  |  | ||||||
|  |         // Configure container includeIf | ||||||
|  |         await this.git.config( | ||||||
|  |           `includeIf.gitdir:${containerSubmoduleGitDir}.path`, | ||||||
|  |           containerCredentialsPath, | ||||||
|  |           false, // globalConfig? | ||||||
|  |           false, // add? | ||||||
|  |           configPath | ||||||
|  |         ) | ||||||
|       } |       } | ||||||
|  |  | ||||||
|       if (this.settings.sshKey) { |       if (this.settings.sshKey) { | ||||||
| @@ -201,6 +243,10 @@ class GitAuthHelper { | |||||||
|     } |     } | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Configures SSH authentication by writing the SSH key and known hosts, | ||||||
|  |    * and setting up the GIT_SSH_COMMAND environment variable. | ||||||
|  |    */ | ||||||
|   private async configureSsh(): Promise<void> { |   private async configureSsh(): Promise<void> { | ||||||
|     if (!this.settings.sshKey) { |     if (!this.settings.sshKey) { | ||||||
|       return |       return | ||||||
| @@ -272,57 +318,116 @@ class GitAuthHelper { | |||||||
|     } |     } | ||||||
|   } |   } | ||||||
|  |  | ||||||
|   private async configureToken( |   /** | ||||||
|     configPath?: string, |    * Configures token-based authentication by creating a credentials config file | ||||||
|     globalConfig?: boolean |    * and setting up includeIf entries to reference it. | ||||||
|   ): Promise<void> { |    * @param globalConfig Whether to configure global config instead of local | ||||||
|     // Validate args |    */ | ||||||
|     assert.ok( |   private async configureToken(globalConfig?: boolean): Promise<void> { | ||||||
|       (configPath && globalConfig) || (!configPath && !globalConfig), |     // Get the credentials config file path in RUNNER_TEMP | ||||||
|       'Unexpected configureToken parameter combinations' |     const credentialsConfigPath = this.getCredentialsConfigPath() | ||||||
|     ) |  | ||||||
|  |  | ||||||
|     // Default config path |     // Write placeholder to the separate credentials config file using git config. | ||||||
|     if (!configPath && !globalConfig) { |     // This approach avoids the credential being captured by process creation audit events, | ||||||
|       configPath = path.join(this.git.getWorkingDirectory(), '.git', 'config') |     // which are commonly logged. For more information, refer to | ||||||
|     } |     // https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/manage/component-updates/command-line-process-auditing | ||||||
|  |  | ||||||
|     // Configure a placeholder value. This approach avoids the credential being captured |  | ||||||
|     // by process creation audit events, which are commonly logged. For more information, |  | ||||||
|     // refer to https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/manage/component-updates/command-line-process-auditing |  | ||||||
|     await this.git.config( |     await this.git.config( | ||||||
|       this.tokenConfigKey, |       this.tokenConfigKey, | ||||||
|       this.tokenPlaceholderConfigValue, |       this.tokenPlaceholderConfigValue, | ||||||
|       globalConfig |       false, // globalConfig? | ||||||
|  |       false, // add? | ||||||
|  |       credentialsConfigPath | ||||||
|     ) |     ) | ||||||
|  |  | ||||||
|     // Replace the placeholder |     // Replace the placeholder in the credentials config file | ||||||
|     await this.replaceTokenPlaceholder(configPath || '') |     let content = (await fs.promises.readFile(credentialsConfigPath)).toString() | ||||||
|   } |  | ||||||
|  |  | ||||||
|   private async replaceTokenPlaceholder(configPath: string): Promise<void> { |  | ||||||
|     assert.ok(configPath, 'configPath is not defined') |  | ||||||
|     let content = (await fs.promises.readFile(configPath)).toString() |  | ||||||
|     const placeholderIndex = content.indexOf(this.tokenPlaceholderConfigValue) |     const placeholderIndex = content.indexOf(this.tokenPlaceholderConfigValue) | ||||||
|     if ( |     if ( | ||||||
|       placeholderIndex < 0 || |       placeholderIndex < 0 || | ||||||
|       placeholderIndex != content.lastIndexOf(this.tokenPlaceholderConfigValue) |       placeholderIndex != content.lastIndexOf(this.tokenPlaceholderConfigValue) | ||||||
|     ) { |     ) { | ||||||
|       throw new Error(`Unable to replace auth placeholder in ${configPath}`) |       throw new Error( | ||||||
|  |         `Unable to replace auth placeholder in ${credentialsConfigPath}` | ||||||
|  |       ) | ||||||
|     } |     } | ||||||
|     assert.ok(this.tokenConfigValue, 'tokenConfigValue is not defined') |     assert.ok(this.tokenConfigValue, 'tokenConfigValue is not defined') | ||||||
|     content = content.replace( |     content = content.replace( | ||||||
|       this.tokenPlaceholderConfigValue, |       this.tokenPlaceholderConfigValue, | ||||||
|       this.tokenConfigValue |       this.tokenConfigValue | ||||||
|     ) |     ) | ||||||
|     await fs.promises.writeFile(configPath, content) |     await fs.promises.writeFile(credentialsConfigPath, content) | ||||||
|  |  | ||||||
|  |     // Add include or includeIf to reference the credentials config | ||||||
|  |     if (globalConfig) { | ||||||
|  |       // Global config file is temporary | ||||||
|  |       await this.git.config( | ||||||
|  |         'include.path', | ||||||
|  |         credentialsConfigPath, | ||||||
|  |         true // globalConfig? | ||||||
|  |       ) | ||||||
|  |     } else { | ||||||
|  |       // Host git directory | ||||||
|  |       let gitDir = path.join(this.git.getWorkingDirectory(), '.git') | ||||||
|  |       gitDir = gitDir.replace(/\\/g, '/') // Use forward slashes, even on Windows | ||||||
|  |  | ||||||
|  |       // Configure host includeIf | ||||||
|  |       const hostIncludeKey = `includeIf.gitdir:${gitDir}.path` | ||||||
|  |       await this.git.config(hostIncludeKey, credentialsConfigPath) | ||||||
|  |  | ||||||
|  |       // Container git directory | ||||||
|  |       const workingDirectory = this.git.getWorkingDirectory() | ||||||
|  |       const githubWorkspace = process.env['GITHUB_WORKSPACE'] | ||||||
|  |       assert.ok(githubWorkspace, 'GITHUB_WORKSPACE is not defined') | ||||||
|  |       let relativePath = path.relative(githubWorkspace, workingDirectory) | ||||||
|  |       relativePath = relativePath.replace(/\\/g, '/') // Use forward slashes, even on Windows | ||||||
|  |       const containerGitDir = path.posix.join( | ||||||
|  |         '/github/workspace', | ||||||
|  |         relativePath, | ||||||
|  |         '.git' | ||||||
|  |       ) | ||||||
|  |  | ||||||
|  |       // Container credentials config path | ||||||
|  |       const containerCredentialsPath = path.posix.join( | ||||||
|  |         '/github/runner_temp', | ||||||
|  |         path.basename(credentialsConfigPath) | ||||||
|  |       ) | ||||||
|  |  | ||||||
|  |       // Configure container includeIf | ||||||
|  |       const containerIncludeKey = `includeIf.gitdir:${containerGitDir}.path` | ||||||
|  |       await this.git.config(containerIncludeKey, containerCredentialsPath) | ||||||
|  |     } | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Gets or creates the path to the credentials config file in RUNNER_TEMP. | ||||||
|  |    * @returns The absolute path to the credentials config file | ||||||
|  |    */ | ||||||
|  |   private getCredentialsConfigPath(): string { | ||||||
|  |     if (this.credentialsConfigPath) { | ||||||
|  |       return this.credentialsConfigPath | ||||||
|  |     } | ||||||
|  |  | ||||||
|  |     const runnerTemp = process.env['RUNNER_TEMP'] || '' | ||||||
|  |     assert.ok(runnerTemp, 'RUNNER_TEMP is not defined') | ||||||
|  |  | ||||||
|  |     // Create a unique filename for this checkout instance | ||||||
|  |     const configFileName = `git-credentials-${uuid()}.config` | ||||||
|  |     this.credentialsConfigPath = path.join(runnerTemp, configFileName) | ||||||
|  |  | ||||||
|  |     core.debug(`Credentials config path: ${this.credentialsConfigPath}`) | ||||||
|  |     return this.credentialsConfigPath | ||||||
|  |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Removes SSH authentication configuration by cleaning up SSH keys, | ||||||
|  |    * known hosts files, and SSH command configurations. | ||||||
|  |    */ | ||||||
|   private async removeSsh(): Promise<void> { |   private async removeSsh(): Promise<void> { | ||||||
|     // SSH key |     // SSH key | ||||||
|     const keyPath = this.sshKeyPath || stateHelper.SshKeyPath |     const keyPath = this.sshKeyPath || stateHelper.SshKeyPath | ||||||
|     if (keyPath) { |     if (keyPath) { | ||||||
|       try { |       try { | ||||||
|  |         core.info(`Removing SSH key '${keyPath}'`) | ||||||
|         await io.rmRF(keyPath) |         await io.rmRF(keyPath) | ||||||
|       } catch (err) { |       } catch (err) { | ||||||
|         core.debug(`${(err as any)?.message ?? err}`) |         core.debug(`${(err as any)?.message ?? err}`) | ||||||
| @@ -335,40 +440,149 @@ class GitAuthHelper { | |||||||
|       this.sshKnownHostsPath || stateHelper.SshKnownHostsPath |       this.sshKnownHostsPath || stateHelper.SshKnownHostsPath | ||||||
|     if (knownHostsPath) { |     if (knownHostsPath) { | ||||||
|       try { |       try { | ||||||
|  |         core.info(`Removing SSH known hosts '${knownHostsPath}'`) | ||||||
|         await io.rmRF(knownHostsPath) |         await io.rmRF(knownHostsPath) | ||||||
|       } catch { |       } catch (err) { | ||||||
|         // Intentionally empty |         core.debug(`${(err as any)?.message ?? err}`) | ||||||
|  |         core.warning(`Failed to remove SSH known hosts '${knownHostsPath}'`) | ||||||
|       } |       } | ||||||
|     } |     } | ||||||
|  |  | ||||||
|     // SSH command |     // SSH command | ||||||
|  |     core.info('Removing SSH command configuration') | ||||||
|     await this.removeGitConfig(SSH_COMMAND_KEY) |     await this.removeGitConfig(SSH_COMMAND_KEY) | ||||||
|  |     await this.removeSubmoduleGitConfig(SSH_COMMAND_KEY) | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Removes token-based authentication by cleaning up HTTP headers, | ||||||
|  |    * includeIf entries, and credentials config files. | ||||||
|  |    */ | ||||||
|   private async removeToken(): Promise<void> { |   private async removeToken(): Promise<void> { | ||||||
|     // HTTP extra header |     // Remove HTTP extra header | ||||||
|  |     core.info('Removing HTTP extra header') | ||||||
|     await this.removeGitConfig(this.tokenConfigKey) |     await this.removeGitConfig(this.tokenConfigKey) | ||||||
|   } |     await this.removeSubmoduleGitConfig(this.tokenConfigKey) | ||||||
|  |  | ||||||
|   private async removeGitConfig( |     // Collect credentials config paths that need to be removed | ||||||
|     configKey: string, |     const credentialsPaths = new Set<string>() | ||||||
|     submoduleOnly: boolean = false |  | ||||||
|   ): Promise<void> { |     // Remove includeIf entries that point to git-credentials-*.config files | ||||||
|     if (!submoduleOnly) { |     core.info('Removing includeIf entries pointing to credentials config files') | ||||||
|       if ( |     const mainCredentialsPaths = await this.removeIncludeIfCredentials() | ||||||
|         (await this.git.configExists(configKey)) && |     mainCredentialsPaths.forEach(path => credentialsPaths.add(path)) | ||||||
|         !(await this.git.tryConfigUnset(configKey)) |  | ||||||
|       ) { |     // Remove submodule includeIf entries that point to git-credentials-*.config files | ||||||
|         // Load the config contents |     const submoduleConfigPaths = await this.git.getSubmoduleConfigPaths(true) | ||||||
|         core.warning(`Failed to remove '${configKey}' from the git config`) |     for (const configPath of submoduleConfigPaths) { | ||||||
|       } |       const submoduleCredentialsPaths = | ||||||
|  |         await this.removeIncludeIfCredentials(configPath) | ||||||
|  |       submoduleCredentialsPaths.forEach(path => credentialsPaths.add(path)) | ||||||
|     } |     } | ||||||
|  |  | ||||||
|  |     // Remove credentials config files | ||||||
|  |     for (const credentialsPath of credentialsPaths) { | ||||||
|  |       // Only remove credentials config files if they are under RUNNER_TEMP | ||||||
|  |       const runnerTemp = process.env['RUNNER_TEMP'] | ||||||
|  |       assert.ok(runnerTemp, 'RUNNER_TEMP is not defined') | ||||||
|  |       if (credentialsPath.startsWith(runnerTemp)) { | ||||||
|  |         try { | ||||||
|  |           core.info(`Removing credentials config '${credentialsPath}'`) | ||||||
|  |           await io.rmRF(credentialsPath) | ||||||
|  |         } catch (err) { | ||||||
|  |           core.debug(`${(err as any)?.message ?? err}`) | ||||||
|  |           core.warning( | ||||||
|  |             `Failed to remove credentials config '${credentialsPath}'` | ||||||
|  |           ) | ||||||
|  |         } | ||||||
|  |       } else { | ||||||
|  |         core.debug( | ||||||
|  |           `Skipping removal of credentials config '${credentialsPath}' - not under RUNNER_TEMP` | ||||||
|  |         ) | ||||||
|  |       } | ||||||
|  |     } | ||||||
|  |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Removes a git config key from the local repository config. | ||||||
|  |    * @param configKey The git config key to remove | ||||||
|  |    */ | ||||||
|  |   private async removeGitConfig(configKey: string): Promise<void> { | ||||||
|  |     if ( | ||||||
|  |       (await this.git.configExists(configKey)) && | ||||||
|  |       !(await this.git.tryConfigUnset(configKey)) | ||||||
|  |     ) { | ||||||
|  |       // Load the config contents | ||||||
|  |       core.warning(`Failed to remove '${configKey}' from the git config`) | ||||||
|  |     } | ||||||
|  |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Removes a git config key from all submodule configs. | ||||||
|  |    * @param configKey The git config key to remove | ||||||
|  |    */ | ||||||
|  |   private async removeSubmoduleGitConfig(configKey: string): Promise<void> { | ||||||
|     const pattern = regexpHelper.escape(configKey) |     const pattern = regexpHelper.escape(configKey) | ||||||
|     await this.git.submoduleForeach( |     await this.git.submoduleForeach( | ||||||
|       // wrap the pipeline in quotes to make sure it's handled properly by submoduleForeach, rather than just the first part of the pipeline |       // Wrap the pipeline in quotes to make sure it's handled properly by submoduleForeach, rather than just the first part of the pipeline. | ||||||
|       `sh -c "git config --local --name-only --get-regexp '${pattern}' && git config --local --unset-all '${configKey}' || :"`, |       `sh -c "git config --local --name-only --get-regexp '${pattern}' && git config --local --unset-all '${configKey}' || :"`, | ||||||
|       true |       true | ||||||
|     ) |     ) | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Removes includeIf entries that point to git-credentials-*.config files. | ||||||
|  |    * @param configPath Optional path to a specific git config file to operate on | ||||||
|  |    * @returns Array of unique credentials config file paths that were found and removed | ||||||
|  |    */ | ||||||
|  |   private async removeIncludeIfCredentials( | ||||||
|  |     configPath?: string | ||||||
|  |   ): Promise<string[]> { | ||||||
|  |     const credentialsPaths = new Set<string>() | ||||||
|  |  | ||||||
|  |     try { | ||||||
|  |       // Get all includeIf.gitdir keys | ||||||
|  |       const keys = await this.git.tryGetConfigKeys( | ||||||
|  |         '^includeIf\\.gitdir:', | ||||||
|  |         false, // globalConfig? | ||||||
|  |         configPath | ||||||
|  |       ) | ||||||
|  |  | ||||||
|  |       for (const key of keys) { | ||||||
|  |         // Get all values for this key | ||||||
|  |         const values = await this.git.tryGetConfigValues( | ||||||
|  |           key, | ||||||
|  |           false, // globalConfig? | ||||||
|  |           configPath | ||||||
|  |         ) | ||||||
|  |         if (values.length > 0) { | ||||||
|  |           // Remove only values that match git-credentials-<uuid>.config pattern | ||||||
|  |           for (const value of values) { | ||||||
|  |             if (this.testCredentialsConfigPath(value)) { | ||||||
|  |               credentialsPaths.add(value) | ||||||
|  |               await this.git.tryConfigUnsetValue(key, value, false, configPath) | ||||||
|  |             } | ||||||
|  |           } | ||||||
|  |         } | ||||||
|  |       } | ||||||
|  |     } catch (err) { | ||||||
|  |       // Ignore errors - this is cleanup code | ||||||
|  |       if (configPath) { | ||||||
|  |         core.debug(`Error during includeIf cleanup for ${configPath}: ${err}`) | ||||||
|  |       } else { | ||||||
|  |         core.debug(`Error during includeIf cleanup: ${err}`) | ||||||
|  |       } | ||||||
|  |     } | ||||||
|  |  | ||||||
|  |     return Array.from(credentialsPaths) | ||||||
|  |   } | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * Tests if a path matches the git-credentials-*.config pattern. | ||||||
|  |    * @param path The path to test | ||||||
|  |    * @returns True if the path matches the credentials config pattern | ||||||
|  |    */ | ||||||
|  |   private testCredentialsConfigPath(path: string): boolean { | ||||||
|  |     return /git-credentials-[0-9a-f-]+\.config$/i.test(path) | ||||||
|  |   } | ||||||
| } | } | ||||||
|   | |||||||
| @@ -11,12 +11,15 @@ import {GitVersion} from './git-version' | |||||||
|  |  | ||||||
| // Auth header not supported before 2.9 | // Auth header not supported before 2.9 | ||||||
| // Wire protocol v2 not supported before 2.18 | // Wire protocol v2 not supported before 2.18 | ||||||
|  | // sparse-checkout not [well-]supported before 2.28 (see https://github.com/actions/checkout/issues/1386) | ||||||
| export const MinimumGitVersion = new GitVersion('2.18') | export const MinimumGitVersion = new GitVersion('2.18') | ||||||
|  | export const MinimumGitSparseCheckoutVersion = new GitVersion('2.28') | ||||||
|  |  | ||||||
| export interface IGitCommandManager { | export interface IGitCommandManager { | ||||||
|   branchDelete(remote: boolean, branch: string): Promise<void> |   branchDelete(remote: boolean, branch: string): Promise<void> | ||||||
|   branchExists(remote: boolean, pattern: string): Promise<boolean> |   branchExists(remote: boolean, pattern: string): Promise<boolean> | ||||||
|   branchList(remote: boolean): Promise<string[]> |   branchList(remote: boolean): Promise<string[]> | ||||||
|  |   disableSparseCheckout(): Promise<void> | ||||||
|   sparseCheckout(sparseCheckout: string[]): Promise<void> |   sparseCheckout(sparseCheckout: string[]): Promise<void> | ||||||
|   sparseCheckoutNonConeMode(sparseCheckout: string[]): Promise<void> |   sparseCheckoutNonConeMode(sparseCheckout: string[]): Promise<void> | ||||||
|   checkout(ref: string, startPoint: string): Promise<void> |   checkout(ref: string, startPoint: string): Promise<void> | ||||||
| @@ -25,7 +28,8 @@ export interface IGitCommandManager { | |||||||
|     configKey: string, |     configKey: string, | ||||||
|     configValue: string, |     configValue: string, | ||||||
|     globalConfig?: boolean, |     globalConfig?: boolean, | ||||||
|     add?: boolean |     add?: boolean, | ||||||
|  |     configFile?: string | ||||||
|   ): Promise<void> |   ): Promise<void> | ||||||
|   configExists(configKey: string, globalConfig?: boolean): Promise<boolean> |   configExists(configKey: string, globalConfig?: boolean): Promise<boolean> | ||||||
|   fetch( |   fetch( | ||||||
| @@ -38,6 +42,7 @@ export interface IGitCommandManager { | |||||||
|     } |     } | ||||||
|   ): Promise<void> |   ): Promise<void> | ||||||
|   getDefaultBranch(repositoryUrl: string): Promise<string> |   getDefaultBranch(repositoryUrl: string): Promise<string> | ||||||
|  |   getSubmoduleConfigPaths(recursive: boolean): Promise<string[]> | ||||||
|   getWorkingDirectory(): string |   getWorkingDirectory(): string | ||||||
|   init(): Promise<void> |   init(): Promise<void> | ||||||
|   isDetached(): Promise<boolean> |   isDetached(): Promise<boolean> | ||||||
| @@ -56,9 +61,26 @@ export interface IGitCommandManager { | |||||||
|   tagExists(pattern: string): Promise<boolean> |   tagExists(pattern: string): Promise<boolean> | ||||||
|   tryClean(): Promise<boolean> |   tryClean(): Promise<boolean> | ||||||
|   tryConfigUnset(configKey: string, globalConfig?: boolean): Promise<boolean> |   tryConfigUnset(configKey: string, globalConfig?: boolean): Promise<boolean> | ||||||
|  |   tryConfigUnsetValue( | ||||||
|  |     configKey: string, | ||||||
|  |     configValue: string, | ||||||
|  |     globalConfig?: boolean, | ||||||
|  |     configFile?: string | ||||||
|  |   ): Promise<boolean> | ||||||
|   tryDisableAutomaticGarbageCollection(): Promise<boolean> |   tryDisableAutomaticGarbageCollection(): Promise<boolean> | ||||||
|   tryGetFetchUrl(): Promise<string> |   tryGetFetchUrl(): Promise<string> | ||||||
|  |   tryGetConfigValues( | ||||||
|  |     configKey: string, | ||||||
|  |     globalConfig?: boolean, | ||||||
|  |     configFile?: string | ||||||
|  |   ): Promise<string[]> | ||||||
|  |   tryGetConfigKeys( | ||||||
|  |     pattern: string, | ||||||
|  |     globalConfig?: boolean, | ||||||
|  |     configFile?: string | ||||||
|  |   ): Promise<string[]> | ||||||
|   tryReset(): Promise<boolean> |   tryReset(): Promise<boolean> | ||||||
|  |   version(): Promise<GitVersion> | ||||||
| } | } | ||||||
|  |  | ||||||
| export async function createCommandManager( | export async function createCommandManager( | ||||||
| @@ -82,6 +104,7 @@ class GitCommandManager { | |||||||
|   private lfs = false |   private lfs = false | ||||||
|   private doSparseCheckout = false |   private doSparseCheckout = false | ||||||
|   private workingDirectory = '' |   private workingDirectory = '' | ||||||
|  |   private gitVersion: GitVersion = new GitVersion() | ||||||
|  |  | ||||||
|   // Private constructor; use createCommandManager() |   // Private constructor; use createCommandManager() | ||||||
|   private constructor() {} |   private constructor() {} | ||||||
| @@ -171,6 +194,12 @@ class GitCommandManager { | |||||||
|     return result |     return result | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   async disableSparseCheckout(): Promise<void> { | ||||||
|  |     await this.execGit(['sparse-checkout', 'disable']) | ||||||
|  |     // Disabling 'sparse-checkout` leaves behind an undesirable side-effect in config (even in a pristine environment). | ||||||
|  |     await this.tryConfigUnset('extensions.worktreeConfig', false) | ||||||
|  |   } | ||||||
|  |  | ||||||
|   async sparseCheckout(sparseCheckout: string[]): Promise<void> { |   async sparseCheckout(sparseCheckout: string[]): Promise<void> { | ||||||
|     await this.execGit(['sparse-checkout', 'set', ...sparseCheckout]) |     await this.execGit(['sparse-checkout', 'set', ...sparseCheckout]) | ||||||
|   } |   } | ||||||
| @@ -212,9 +241,15 @@ class GitCommandManager { | |||||||
|     configKey: string, |     configKey: string, | ||||||
|     configValue: string, |     configValue: string, | ||||||
|     globalConfig?: boolean, |     globalConfig?: boolean, | ||||||
|     add?: boolean |     add?: boolean, | ||||||
|  |     configFile?: string | ||||||
|   ): Promise<void> { |   ): Promise<void> { | ||||||
|     const args: string[] = ['config', globalConfig ? '--global' : '--local'] |     const args: string[] = ['config'] | ||||||
|  |     if (configFile) { | ||||||
|  |       args.push('--file', configFile) | ||||||
|  |     } else { | ||||||
|  |       args.push(globalConfig ? '--global' : '--local') | ||||||
|  |     } | ||||||
|     if (add) { |     if (add) { | ||||||
|       args.push('--add') |       args.push('--add') | ||||||
|     } |     } | ||||||
| @@ -312,6 +347,21 @@ class GitCommandManager { | |||||||
|     throw new Error('Unexpected output when retrieving default branch') |     throw new Error('Unexpected output when retrieving default branch') | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   async getSubmoduleConfigPaths(recursive: boolean): Promise<string[]> { | ||||||
|  |     // Get submodule config file paths. | ||||||
|  |     // Use `--show-origin` to get the config file path for each submodule. | ||||||
|  |     const output = await this.submoduleForeach( | ||||||
|  |       `git config --local --show-origin --name-only --get-regexp remote.origin.url`, | ||||||
|  |       recursive | ||||||
|  |     ) | ||||||
|  |  | ||||||
|  |     // Extract config file paths from the output (lines starting with "file:"). | ||||||
|  |     const configPaths = | ||||||
|  |       output.match(/(?<=(^|\n)file:)[^\t]+(?=\tremote\.origin\.url)/g) || [] | ||||||
|  |  | ||||||
|  |     return configPaths | ||||||
|  |   } | ||||||
|  |  | ||||||
|   getWorkingDirectory(): string { |   getWorkingDirectory(): string { | ||||||
|     return this.workingDirectory |     return this.workingDirectory | ||||||
|   } |   } | ||||||
| @@ -444,6 +494,24 @@ class GitCommandManager { | |||||||
|     return output.exitCode === 0 |     return output.exitCode === 0 | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   async tryConfigUnsetValue( | ||||||
|  |     configKey: string, | ||||||
|  |     configValue: string, | ||||||
|  |     globalConfig?: boolean, | ||||||
|  |     configFile?: string | ||||||
|  |   ): Promise<boolean> { | ||||||
|  |     const args = ['config'] | ||||||
|  |     if (configFile) { | ||||||
|  |       args.push('--file', configFile) | ||||||
|  |     } else { | ||||||
|  |       args.push(globalConfig ? '--global' : '--local') | ||||||
|  |     } | ||||||
|  |     args.push('--unset', configKey, configValue) | ||||||
|  |  | ||||||
|  |     const output = await this.execGit(args, true) | ||||||
|  |     return output.exitCode === 0 | ||||||
|  |   } | ||||||
|  |  | ||||||
|   async tryDisableAutomaticGarbageCollection(): Promise<boolean> { |   async tryDisableAutomaticGarbageCollection(): Promise<boolean> { | ||||||
|     const output = await this.execGit( |     const output = await this.execGit( | ||||||
|       ['config', '--local', 'gc.auto', '0'], |       ['config', '--local', 'gc.auto', '0'], | ||||||
| @@ -470,11 +538,65 @@ class GitCommandManager { | |||||||
|     return stdout |     return stdout | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   async tryGetConfigValues( | ||||||
|  |     configKey: string, | ||||||
|  |     globalConfig?: boolean, | ||||||
|  |     configFile?: string | ||||||
|  |   ): Promise<string[]> { | ||||||
|  |     const args = ['config'] | ||||||
|  |     if (configFile) { | ||||||
|  |       args.push('--file', configFile) | ||||||
|  |     } else { | ||||||
|  |       args.push(globalConfig ? '--global' : '--local') | ||||||
|  |     } | ||||||
|  |     args.push('--get-all', configKey) | ||||||
|  |  | ||||||
|  |     const output = await this.execGit(args, true) | ||||||
|  |  | ||||||
|  |     if (output.exitCode !== 0) { | ||||||
|  |       return [] | ||||||
|  |     } | ||||||
|  |  | ||||||
|  |     return output.stdout | ||||||
|  |       .trim() | ||||||
|  |       .split('\n') | ||||||
|  |       .filter(value => value.trim()) | ||||||
|  |   } | ||||||
|  |  | ||||||
|  |   async tryGetConfigKeys( | ||||||
|  |     pattern: string, | ||||||
|  |     globalConfig?: boolean, | ||||||
|  |     configFile?: string | ||||||
|  |   ): Promise<string[]> { | ||||||
|  |     const args = ['config'] | ||||||
|  |     if (configFile) { | ||||||
|  |       args.push('--file', configFile) | ||||||
|  |     } else { | ||||||
|  |       args.push(globalConfig ? '--global' : '--local') | ||||||
|  |     } | ||||||
|  |     args.push('--name-only', '--get-regexp', pattern) | ||||||
|  |  | ||||||
|  |     const output = await this.execGit(args, true) | ||||||
|  |  | ||||||
|  |     if (output.exitCode !== 0) { | ||||||
|  |       return [] | ||||||
|  |     } | ||||||
|  |  | ||||||
|  |     return output.stdout | ||||||
|  |       .trim() | ||||||
|  |       .split('\n') | ||||||
|  |       .filter(key => key.trim()) | ||||||
|  |   } | ||||||
|  |  | ||||||
|   async tryReset(): Promise<boolean> { |   async tryReset(): Promise<boolean> { | ||||||
|     const output = await this.execGit(['reset', '--hard', 'HEAD'], true) |     const output = await this.execGit(['reset', '--hard', 'HEAD'], true) | ||||||
|     return output.exitCode === 0 |     return output.exitCode === 0 | ||||||
|   } |   } | ||||||
|  |  | ||||||
|  |   async version(): Promise<GitVersion> { | ||||||
|  |     return this.gitVersion | ||||||
|  |   } | ||||||
|  |  | ||||||
|   static async createCommandManager( |   static async createCommandManager( | ||||||
|     workingDirectory: string, |     workingDirectory: string, | ||||||
|     lfs: boolean, |     lfs: boolean, | ||||||
| @@ -551,23 +673,23 @@ class GitCommandManager { | |||||||
|  |  | ||||||
|     // Git version |     // Git version | ||||||
|     core.debug('Getting git version') |     core.debug('Getting git version') | ||||||
|     let gitVersion = new GitVersion() |     this.gitVersion = new GitVersion() | ||||||
|     let gitOutput = await this.execGit(['version']) |     let gitOutput = await this.execGit(['version']) | ||||||
|     let stdout = gitOutput.stdout.trim() |     let stdout = gitOutput.stdout.trim() | ||||||
|     if (!stdout.includes('\n')) { |     if (!stdout.includes('\n')) { | ||||||
|       const match = stdout.match(/\d+\.\d+(\.\d+)?/) |       const match = stdout.match(/\d+\.\d+(\.\d+)?/) | ||||||
|       if (match) { |       if (match) { | ||||||
|         gitVersion = new GitVersion(match[0]) |         this.gitVersion = new GitVersion(match[0]) | ||||||
|       } |       } | ||||||
|     } |     } | ||||||
|     if (!gitVersion.isValid()) { |     if (!this.gitVersion.isValid()) { | ||||||
|       throw new Error('Unable to determine git version') |       throw new Error('Unable to determine git version') | ||||||
|     } |     } | ||||||
|  |  | ||||||
|     // Minimum git version |     // Minimum git version | ||||||
|     if (!gitVersion.checkMinimum(MinimumGitVersion)) { |     if (!this.gitVersion.checkMinimum(MinimumGitVersion)) { | ||||||
|       throw new Error( |       throw new Error( | ||||||
|         `Minimum required git version is ${MinimumGitVersion}. Your git ('${this.gitPath}') is ${gitVersion}` |         `Minimum required git version is ${MinimumGitVersion}. Your git ('${this.gitPath}') is ${this.gitVersion}` | ||||||
|       ) |       ) | ||||||
|     } |     } | ||||||
|  |  | ||||||
| @@ -601,16 +723,14 @@ class GitCommandManager { | |||||||
|  |  | ||||||
|     this.doSparseCheckout = doSparseCheckout |     this.doSparseCheckout = doSparseCheckout | ||||||
|     if (this.doSparseCheckout) { |     if (this.doSparseCheckout) { | ||||||
|       // The `git sparse-checkout` command was introduced in Git v2.25.0 |       if (!this.gitVersion.checkMinimum(MinimumGitSparseCheckoutVersion)) { | ||||||
|       const minimumGitSparseCheckoutVersion = new GitVersion('2.25') |  | ||||||
|       if (!gitVersion.checkMinimum(minimumGitSparseCheckoutVersion)) { |  | ||||||
|         throw new Error( |         throw new Error( | ||||||
|           `Minimum Git version required for sparse checkout is ${minimumGitSparseCheckoutVersion}. Your git ('${this.gitPath}') is ${gitVersion}` |           `Minimum Git version required for sparse checkout is ${MinimumGitSparseCheckoutVersion}. Your git ('${this.gitPath}') is ${this.gitVersion}` | ||||||
|         ) |         ) | ||||||
|       } |       } | ||||||
|     } |     } | ||||||
|     // Set the user agent |     // Set the user agent | ||||||
|     const gitHttpUserAgent = `git/${gitVersion} (github-actions-checkout)` |     const gitHttpUserAgent = `git/${this.gitVersion} (github-actions-checkout)` | ||||||
|     core.debug(`Set git useragent to: ${gitHttpUserAgent}`) |     core.debug(`Set git useragent to: ${gitHttpUserAgent}`) | ||||||
|     this.gitEnv['GIT_HTTP_USER_AGENT'] = gitHttpUserAgent |     this.gitEnv['GIT_HTTP_USER_AGENT'] = gitHttpUserAgent | ||||||
|   } |   } | ||||||
|   | |||||||
| @@ -9,7 +9,10 @@ import * as path from 'path' | |||||||
| import * as refHelper from './ref-helper' | import * as refHelper from './ref-helper' | ||||||
| import * as stateHelper from './state-helper' | import * as stateHelper from './state-helper' | ||||||
| import * as urlHelper from './url-helper' | import * as urlHelper from './url-helper' | ||||||
| import {IGitCommandManager} from './git-command-manager' | import { | ||||||
|  |   MinimumGitSparseCheckoutVersion, | ||||||
|  |   IGitCommandManager | ||||||
|  | } from './git-command-manager' | ||||||
| import {IGitSourceSettings} from './git-source-settings' | import {IGitSourceSettings} from './git-source-settings' | ||||||
|  |  | ||||||
| export async function getSource(settings: IGitSourceSettings): Promise<void> { | export async function getSource(settings: IGitSourceSettings): Promise<void> { | ||||||
| @@ -208,7 +211,13 @@ export async function getSource(settings: IGitSourceSettings): Promise<void> { | |||||||
|     } |     } | ||||||
|  |  | ||||||
|     // Sparse checkout |     // Sparse checkout | ||||||
|     if (settings.sparseCheckout) { |     if (!settings.sparseCheckout) { | ||||||
|  |       let gitVersion = await git.version() | ||||||
|  |       // no need to disable sparse-checkout if the installed git runtime doesn't even support it. | ||||||
|  |       if (gitVersion.checkMinimum(MinimumGitSparseCheckoutVersion)) { | ||||||
|  |         await git.disableSparseCheckout() | ||||||
|  |       } | ||||||
|  |     } else { | ||||||
|       core.startGroup('Setting up sparse checkout') |       core.startGroup('Setting up sparse checkout') | ||||||
|       if (settings.sparseCheckoutConeMode) { |       if (settings.sparseCheckoutConeMode) { | ||||||
|         await git.sparseCheckout(settings.sparseCheckout) |         await git.sparseCheckout(settings.sparseCheckout) | ||||||
| @@ -252,7 +261,8 @@ export async function getSource(settings: IGitSourceSettings): Promise<void> { | |||||||
|     const commitInfo = await git.log1() |     const commitInfo = await git.log1() | ||||||
|  |  | ||||||
|     // Log commit sha |     // Log commit sha | ||||||
|     await git.log1("--format='%H'") |     const commitSHA = await git.log1('--format=%H') | ||||||
|  |     core.setOutput('commit', commitSHA.trim()) | ||||||
|  |  | ||||||
|     // Check for incorrect pull request merge commit |     // Check for incorrect pull request merge commit | ||||||
|     await refHelper.checkCommitInfo( |     await refHelper.checkCommitInfo( | ||||||
|   | |||||||
| @@ -94,6 +94,11 @@ export interface IGitSourceSettings { | |||||||
|    */ |    */ | ||||||
|   sshStrict: boolean |   sshStrict: boolean | ||||||
|  |  | ||||||
|  |   /** | ||||||
|  |    * The SSH user to login as | ||||||
|  |    */ | ||||||
|  |   sshUser: string | ||||||
|  |  | ||||||
|   /** |   /** | ||||||
|    * Indicates whether to persist the credentials on disk to enable scripting authenticated git commands |    * Indicates whether to persist the credentials on disk to enable scripting authenticated git commands | ||||||
|    */ |    */ | ||||||
|   | |||||||
| @@ -6,7 +6,7 @@ import * as io from '@actions/io' | |||||||
| import * as path from 'path' | import * as path from 'path' | ||||||
| import * as retryHelper from './retry-helper' | import * as retryHelper from './retry-helper' | ||||||
| import * as toolCache from '@actions/tool-cache' | import * as toolCache from '@actions/tool-cache' | ||||||
| import {default as uuid} from 'uuid/v4' | import {v4 as uuid} from 'uuid' | ||||||
| import {getServerApiUrl} from './url-helper' | import {getServerApiUrl} from './url-helper' | ||||||
|  |  | ||||||
| const IS_WINDOWS = process.platform === 'win32' | const IS_WINDOWS = process.platform === 'win32' | ||||||
| @@ -35,7 +35,9 @@ export async function downloadRepository( | |||||||
|   // Write archive to disk |   // Write archive to disk | ||||||
|   core.info('Writing archive to disk') |   core.info('Writing archive to disk') | ||||||
|   const uniqueId = uuid() |   const uniqueId = uuid() | ||||||
|   const archivePath = path.join(repositoryPath, `${uniqueId}.tar.gz`) |   const archivePath = IS_WINDOWS | ||||||
|  |     ? path.join(repositoryPath, `${uniqueId}.zip`) | ||||||
|  |     : path.join(repositoryPath, `${uniqueId}.tar.gz`) | ||||||
|   await fs.promises.writeFile(archivePath, archiveData) |   await fs.promises.writeFile(archivePath, archiveData) | ||||||
|   archiveData = Buffer.from('') // Free memory |   archiveData = Buffer.from('') // Free memory | ||||||
|  |  | ||||||
|   | |||||||
| @@ -143,6 +143,7 @@ export async function getInputs(): Promise<IGitSourceSettings> { | |||||||
|   result.sshKnownHosts = core.getInput('ssh-known-hosts') |   result.sshKnownHosts = core.getInput('ssh-known-hosts') | ||||||
|   result.sshStrict = |   result.sshStrict = | ||||||
|     (core.getInput('ssh-strict') || 'true').toUpperCase() === 'TRUE' |     (core.getInput('ssh-strict') || 'true').toUpperCase() === 'TRUE' | ||||||
|  |   result.sshUser = core.getInput('ssh-user') | ||||||
|  |  | ||||||
|   // Persist credentials |   // Persist credentials | ||||||
|   result.persistCredentials = |   result.persistCredentials = | ||||||
|   | |||||||
| @@ -19,6 +19,7 @@ async function run(): Promise<void> { | |||||||
|  |  | ||||||
|       // Get sources |       // Get sources | ||||||
|       await gitSourceProvider.getSource(sourceSettings) |       await gitSourceProvider.getSource(sourceSettings) | ||||||
|  |       core.setOutput('ref', sourceSettings.ref) | ||||||
|     } finally { |     } finally { | ||||||
|       // Unregister problem matcher |       // Unregister problem matcher | ||||||
|       coreCommand.issueCommand('remove-matcher', {owner: 'checkout-git'}, '') |       coreCommand.issueCommand('remove-matcher', {owner: 'checkout-git'}, '') | ||||||
|   | |||||||
| @@ -20,7 +20,7 @@ function updateUsage( | |||||||
|   } |   } | ||||||
|  |  | ||||||
|   // Load the action.yml |   // Load the action.yml | ||||||
|   const actionYaml = yaml.safeLoad(fs.readFileSync(actionYamlPath).toString()) |   const actionYaml = yaml.load(fs.readFileSync(actionYamlPath).toString()) | ||||||
|  |  | ||||||
|   // Load the README |   // Load the README | ||||||
|   const originalReadme = fs.readFileSync(readmePath).toString() |   const originalReadme = fs.readFileSync(readmePath).toString() | ||||||
| @@ -120,7 +120,7 @@ function updateUsage( | |||||||
| } | } | ||||||
|  |  | ||||||
| updateUsage( | updateUsage( | ||||||
|   'actions/checkout@v4', |   'actions/checkout@v5', | ||||||
|   path.join(__dirname, '..', '..', 'action.yml'), |   path.join(__dirname, '..', '..', 'action.yml'), | ||||||
|   path.join(__dirname, '..', '..', 'README.md') |   path.join(__dirname, '..', '..', 'README.md') | ||||||
| ) | ) | ||||||
|   | |||||||
| @@ -42,9 +42,13 @@ export async function getCheckoutInfo( | |||||||
|     result.ref = `refs/remotes/pull/${branch}` |     result.ref = `refs/remotes/pull/${branch}` | ||||||
|   } |   } | ||||||
|   // refs/tags/ |   // refs/tags/ | ||||||
|   else if (upperRef.startsWith('REFS/')) { |   else if (upperRef.startsWith('REFS/TAGS/')) { | ||||||
|     result.ref = ref |     result.ref = ref | ||||||
|   } |   } | ||||||
|  |   // refs/ | ||||||
|  |   else if (upperRef.startsWith('REFS/')) { | ||||||
|  |     result.ref = commit ? commit : ref | ||||||
|  |   } | ||||||
|   // Unqualified ref, check for a matching branch or tag |   // Unqualified ref, check for a matching branch or tag | ||||||
|   else { |   else { | ||||||
|     if (await git.branchExists(true, `origin/${ref}`)) { |     if (await git.branchExists(true, `origin/${ref}`)) { | ||||||
|   | |||||||
| @@ -12,7 +12,8 @@ export function getFetchUrl(settings: IGitSourceSettings): string { | |||||||
|   const encodedOwner = encodeURIComponent(settings.repositoryOwner) |   const encodedOwner = encodeURIComponent(settings.repositoryOwner) | ||||||
|   const encodedName = encodeURIComponent(settings.repositoryName) |   const encodedName = encodeURIComponent(settings.repositoryName) | ||||||
|   if (settings.sshKey) { |   if (settings.sshKey) { | ||||||
|     return `git@${serviceUrl.hostname}:${encodedOwner}/${encodedName}.git` |     const user = settings.sshUser.length > 0 ? settings.sshUser : 'git' | ||||||
|  |     return `${user}@${serviceUrl.hostname}:${encodedOwner}/${encodedName}.git` | ||||||
|   } |   } | ||||||
|  |  | ||||||
|   // "origin" is SCHEME://HOSTNAME[:PORT] |   // "origin" is SCHEME://HOSTNAME[:PORT] | ||||||
| @@ -20,26 +21,61 @@ export function getFetchUrl(settings: IGitSourceSettings): string { | |||||||
| } | } | ||||||
|  |  | ||||||
| export function getServerUrl(url?: string): URL { | export function getServerUrl(url?: string): URL { | ||||||
|   let urlValue = |   let resolvedUrl = process.env['GITHUB_SERVER_URL'] || 'https://github.com' | ||||||
|     url && url.trim().length > 0 |   if (hasContent(url, WhitespaceMode.Trim)) { | ||||||
|       ? url |     resolvedUrl = url! | ||||||
|       : process.env['GITHUB_SERVER_URL'] || 'https://github.com' |   } | ||||||
|   return new URL(urlValue) |  | ||||||
|  |   return new URL(resolvedUrl) | ||||||
| } | } | ||||||
|  |  | ||||||
| export function getServerApiUrl(url?: string): string { | export function getServerApiUrl(url?: string): string { | ||||||
|   let apiUrl = 'https://api.github.com' |   if (hasContent(url, WhitespaceMode.Trim)) { | ||||||
|  |     let serverUrl = getServerUrl(url) | ||||||
|  |     if (isGhes(url)) { | ||||||
|  |       serverUrl.pathname = 'api/v3' | ||||||
|  |     } else { | ||||||
|  |       serverUrl.hostname = 'api.' + serverUrl.hostname | ||||||
|  |     } | ||||||
|  |  | ||||||
|   if (isGhes(url)) { |     return pruneSuffix(serverUrl.toString(), '/') | ||||||
|     const serverUrl = getServerUrl(url) |  | ||||||
|     apiUrl = new URL(`${serverUrl.origin}/api/v3`).toString() |  | ||||||
|   } |   } | ||||||
|  |  | ||||||
|   return apiUrl |   return process.env['GITHUB_API_URL'] || 'https://api.github.com' | ||||||
| } | } | ||||||
|  |  | ||||||
| export function isGhes(url?: string): boolean { | export function isGhes(url?: string): boolean { | ||||||
|   const ghUrl = getServerUrl(url) |   const ghUrl = new URL( | ||||||
|  |     url || process.env['GITHUB_SERVER_URL'] || 'https://github.com' | ||||||
|  |   ) | ||||||
|  |  | ||||||
|   return ghUrl.hostname.toUpperCase() !== 'GITHUB.COM' |   const hostname = ghUrl.hostname.trimEnd().toUpperCase() | ||||||
|  |   const isGitHubHost = hostname === 'GITHUB.COM' | ||||||
|  |   const isGitHubEnterpriseCloudHost = hostname.endsWith('.GHE.COM') | ||||||
|  |   const isLocalHost = hostname.endsWith('.LOCALHOST') | ||||||
|  |  | ||||||
|  |   return !isGitHubHost && !isGitHubEnterpriseCloudHost && !isLocalHost | ||||||
|  | } | ||||||
|  |  | ||||||
|  | function pruneSuffix(text: string, suffix: string) { | ||||||
|  |   if (hasContent(suffix, WhitespaceMode.Preserve) && text?.endsWith(suffix)) { | ||||||
|  |     return text.substring(0, text.length - suffix.length) | ||||||
|  |   } | ||||||
|  |   return text | ||||||
|  | } | ||||||
|  |  | ||||||
|  | enum WhitespaceMode { | ||||||
|  |   Trim, | ||||||
|  |   Preserve | ||||||
|  | } | ||||||
|  |  | ||||||
|  | function hasContent( | ||||||
|  |   text: string | undefined, | ||||||
|  |   whitespaceMode: WhitespaceMode | ||||||
|  | ): boolean { | ||||||
|  |   let refinedText = text ?? '' | ||||||
|  |   if (whitespaceMode == WhitespaceMode.Trim) { | ||||||
|  |     refinedText = refinedText.trim() | ||||||
|  |   } | ||||||
|  |   return refinedText.length > 0 | ||||||
| } | } | ||||||
|   | |||||||
		Reference in New Issue
	
	Block a user