Files
republic-os/.github/workflows/check.yml
Fabio 5c76ab4a64
check / check (push) Successful in 39s
CI: run the full gate on every push
make build + make validate on GitHub Actions, plus a determinism
check: the committed tree must be byte-identical to the build output,
or the push fails. The mirror now guards itself.

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-07-06 09:52:38 -04:00

27 lines
703 B
YAML

name: check
on:
push:
pull_request:
jobs:
check:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- uses: actions/setup-python@v5
with:
python-version: "3.12"
# Standard library only — no dependencies to install.
- name: Build (deterministic regeneration)
run: make build
- name: Verify the build changed nothing
run: |
if ! git diff --quiet; then
echo "::error::make build produced a diff — committed tree is not the deterministic build output"
git diff --stat
exit 1
fi
- name: Validate (OKF + schema + link integrity)
run: make validate