Pick any line to see why it is the way it is: the commit, the pull request and issue it came from, and what the agent was thinking.
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 1 | import type { User, Viewer } from "./identity"; |
| 2 | import type { RepoPath } from "./repos"; | |
| 3 | import type { Result } from "./result"; | |
| 4 | ||
| 5 | /** | |
| 6 | * GitHub Actions workflows, run on g1t as they are. Mirrors | |
| 7 | * `crates/contracts/src/actions.rs`. | |
| 8 | */ | |
| 9 | ||
| 10 | export type WorkflowNote = { | |
| 11 | severity: "info" | "warning" | "unsupported"; | |
| 12 | job: string | null; | |
| 13 | message: string; | |
| 14 | }; | |
| 15 | ||
| 16 | /** One `workflow_dispatch` input, as written in the workflow. */ | |
| 17 | export type DispatchInput = { | |
| 18 | description?: string; | |
| 19 | required?: boolean; | |
| 20 | default?: string | number | boolean; | |
| 21 | type?: "string" | "boolean" | "number" | "choice" | "environment"; | |
| 22 | options?: string[]; | |
| 23 | }; | |
| 24 | ||
| 25 | export type RunStatus = "pending" | "queued" | "in_progress" | "completed"; | |
| 26 | export type Conclusion = "success" | "failure" | "cancelled" | "skipped"; | |
| 27 | ||
| 28 | export type WorkflowRun = { | |
| 29 | id: string; | |
| 30 | workflowId: string; | |
| 31 | path: string; | |
| 32 | name: string; | |
| 33 | title: string; | |
| 34 | number: number; | |
| 35 | attempt: number; | |
| 36 | event: string; | |
| 37 | ref: string; | |
| 38 | sha: string; | |
| 39 | pull: number | null; | |
| 40 | status: RunStatus; | |
| 41 | conclusion: Conclusion | null; | |
| 42 | error: string | null; | |
| 43 | actor: string | null; | |
| 44 | createdAt: string; | |
| 45 | startedAt: string | null; | |
| 46 | finishedAt: string | null; | |
| 47 | }; | |
| 48 | ||
| 49 | export type Workflow = { | |
| 50 | id: string; | |
| 51 | path: string; | |
| 52 | name: string; | |
| 53 | events: string[]; | |
| 54 | state: "active" | "disabled"; | |
| 55 | error: string | null; | |
| 56 | notes: WorkflowNote[]; | |
| 57 | dispatch: Record<string, DispatchInput> | null; | |
| 58 | lastRun: WorkflowRun | null; | |
| 59 | }; | |
| 60 | ||
| 61 | export type StepState = { | |
| 62 | number: number; | |
| 63 | name: string; | |
| 64 | status: "queued" | "in_progress" | "completed"; | |
| 65 | conclusion: Conclusion | null; | |
| 66 | startedAt: string | null; | |
| 67 | finishedAt: string | null; | |
| 68 | }; | |
| 69 | ||
| 70 | export type Annotation = { | |
| 71 | level: "error" | "warning" | "notice"; | |
| 72 | message: string; | |
| 73 | title: string | null; | |
| 74 | file: string | null; | |
| 75 | line: number | null; | |
| 76 | }; | |
| 77 | ||
| 78 | export type Job = { | |
| 79 | id: string; | |
| 80 | runId: string; | |
| 81 | key: string; | |
| 82 | name: string; | |
| 83 | needs: string[]; | |
| Actions: reusable workflows in the repository | 84 | /** `calling`: running the reusable workflow it calls, whose jobs follow it. */ |
| 85 | status: "waiting" | "queued" | "in_progress" | "calling" | "completed"; | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 86 | conclusion: Conclusion | null; |
| 87 | steps: StepState[]; | |
| 88 | annotations: Annotation[]; | |
| 89 | reason: string | null; | |
| 90 | startedAt: string | null; | |
| 91 | finishedAt: string | null; | |
| Fast pages, required checks on the branch, self-hosted runners, honest incidents | 92 | /** Its `runs-on` names self-hosted runners. */ |
| 93 | selfHosted?: boolean; | |
| 94 | /** The self-hosted runner that took it, by name. */ | |
| 95 | runner?: string | null; | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 96 | }; |
| 97 | ||
| 98 | export type RunDetail = { run: WorkflowRun; jobs: Job[]; notes: WorkflowNote[] }; | |
| 99 | ||
| 100 | export type LogChunk = { seq: number; step: number; text: string }; | |
| 101 | export type JobLog = { chunks: LogChunk[]; done: boolean }; | |
| 102 | ||
| Secrets and variables: one list, rows per environment, for workflows and deployments | 103 | /** |
| 104 | * Who may read a secret or variable: `workflows` (`secrets.*`, `vars.*` in | |
| 105 | * GitHub Actions) and `deployments` (a deploy build's environment and the | |
| 106 | * running app's bindings). Agents, checks and the merge queue never read | |
| 107 | * any. | |
| 108 | */ | |
| 109 | export type SettingReader = "workflows" | "deployments"; | |
| 110 | ||
| 111 | /** | |
| 112 | * One row of secrets and variables, as Vercel lists environment variables: | |
| 113 | * a key, its type, the environments it applies to and who reads it. A key | |
| 114 | * may have one row per environment. Secrets' values are never returned. | |
| 115 | */ | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 116 | export type Setting = { |
| Secrets and variables: one list, rows per environment, for workflows and deployments | 117 | id: string; |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 118 | name: string; |
| Secrets and variables: one list, rows per environment, for workflows and deployments | 119 | /** `variable` is shown as Config. Config may become a secret, never back. */ |
| 120 | kind: SettingKind; | |
| 121 | /** A variable's value. */ | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 122 | value: string | null; |
| Projects: what a workspace builds and runs, first on every page | 123 | /** A project's (a repository's belong to its project) or the workspace's. */ |
| 124 | scope: "project" | "workspace"; | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 125 | updatedAt: string; |
| Secrets and variables: one list, rows per environment, for workflows and deployments | 126 | availableTo: SettingReader[]; |
| 127 | /** The environments it applies to; empty is every environment. */ | |
| 128 | environments: string[]; | |
| Projects: what a workspace builds and runs, first on every page | 129 | /** A workspace's row: the projects it reaches, by slug; empty is every one. */ |
| 130 | projects: string[]; | |
| Secrets and variables: one list, rows per environment, for workflows and deployments | 131 | /** Where to rotate it, or who to ask. */ |
| 132 | note: string | null; | |
| 133 | updatedBy: string | null; | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 134 | }; |
| 135 | ||
| Secrets and variables: one list, rows per environment, for workflows and deployments | 136 | /** What saving a row sets beyond its value; left out is unchanged. */ |
| 137 | export type SettingOptions = { | |
| 138 | /** The row to change; left out, the key's row for every environment. */ | |
| 139 | id?: string; | |
| 140 | availableTo?: SettingReader[]; | |
| 141 | environments?: string[]; | |
| Projects: what a workspace builds and runs, first on every page | 142 | /** A workspace's row: project slugs; empty for every one. */ |
| 143 | projects?: string[]; | |
| Secrets and variables: one list, rows per environment, for workflows and deployments | 144 | note?: string; |
| 145 | }; | |
| 146 | ||
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 147 | export type SettingsOwner = { repo: RepoPath } | { workspace: string }; |
| 148 | export type SettingKind = "secret" | "variable"; | |
| Secrets and variables: one list, rows per environment, for workflows and deployments | 149 | /** `all` lists both. */ |
| 150 | export type SettingKindFilter = SettingKind | "all"; | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 151 | |
| 152 | export type RunsFilter = { | |
| 153 | workflow?: string; | |
| 154 | branch?: string; | |
| 155 | event?: string; | |
| 156 | pull?: number; | |
| 157 | sha?: string; | |
| 158 | limit?: number; | |
| 159 | }; | |
| 160 | ||
| 161 | export interface ActionsApi { | |
| 162 | workflows(repo: RepoPath, viewer: Viewer): Promise<Result<Workflow[]>>; | |
| 163 | runs(repo: RepoPath, viewer: Viewer, filter?: RunsFilter): Promise<Result<WorkflowRun[]>>; | |
| 164 | run(repo: RepoPath, viewer: Viewer, id: string): Promise<Result<RunDetail>>; | |
| 165 | logs(repo: RepoPath, viewer: Viewer, job: string, after?: number): Promise<Result<JobLog>>; | |
| 166 | dispatch( | |
| 167 | actor: User, | |
| 168 | repo: RepoPath, | |
| 169 | workflow: string, | |
| 170 | ref: string | undefined, | |
| 171 | inputs: Record<string, unknown>, | |
| 172 | ): Promise<Result<WorkflowRun>>; | |
| 173 | cancel(actor: User, repo: RepoPath, id: string): Promise<Result<WorkflowRun>>; | |
| 174 | rerun(actor: User, repo: RepoPath, id: string, failedOnly?: boolean): Promise<Result<WorkflowRun>>; | |
| 175 | setWorkflowEnabled(actor: User, repo: RepoPath, workflow: string, enabled: boolean): Promise<Result<Workflow>>; | |
| Secrets and variables: one list, rows per environment, for workflows and deployments | 176 | settings(actor: User, owner: SettingsOwner, kind: SettingKindFilter): Promise<Result<Setting[]>>; |
| 177 | /** `value` null keeps an existing entry's default value. */ | |
| 178 | setSetting( | |
| 179 | actor: User, | |
| 180 | owner: SettingsOwner, | |
| 181 | kind: SettingKind, | |
| 182 | name: string, | |
| 183 | value: string | null, | |
| 184 | options?: SettingOptions, | |
| 185 | ): Promise<Result<Setting>>; | |
| 186 | /** One row by `id`, or every row of the key. */ | |
| 187 | deleteSetting(actor: User, owner: SettingsOwner, kind: SettingKindFilter, name: string, id?: string): Promise<Result<boolean>>; | |
| Actions: OIDC tokens, the toolkit's cache and artifact services, and artifacts in R2 | 188 | /** A repository's artifacts, newest first, or one run's. */ |
| 189 | artifacts(repo: RepoPath, viewer: Viewer, filter?: { run?: string; name?: string; page?: number; per_page?: number }): Promise<Result<ArtifactList>>; | |
| 190 | /** One artifact by id, or by run and name, with a token to download it for a few minutes. */ | |
| 191 | artifactDownload(repo: RepoPath, viewer: Viewer, by: { id?: number; run?: string; name?: string }): Promise<Result<ArtifactBlob>>; | |
| 192 | /** Needs the Write role. */ | |
| 193 | deleteArtifact(actor: User, repo: RepoPath, id: number): Promise<Result<Artifact>>; | |
| 194 | /** How long the repository keeps artifacts; with `days`, sets it (Maintain). */ | |
| 195 | artifactRetention(repo: RepoPath, viewer: Viewer, days?: number): Promise<Result<ArtifactRetention>>; | |
| GitHub Actions on g1t, part three: .g1t/workflows, the pages, the docs | 196 | } |
| Actions: OIDC tokens, the toolkit's cache and artifact services, and artifacts in R2 | 197 | |
| 198 | /** | |
| 199 | * A workflow run's artifact, kept in R2 for its retention days. Mirrors | |
| 200 | * `g1t_contracts::actions::Artifact` (which travels in `snake_case`). | |
| 201 | */ | |
| 202 | export type Artifact = { | |
| 203 | id: number; | |
| 204 | name: string; | |
| 205 | size: number; | |
| 206 | /** `sha256:<hex>`, when the uploader said. */ | |
| 207 | digest: string | null; | |
| 208 | /** `zip`, or `tgz` for one an older runner sent. */ | |
| 209 | format: string; | |
| 210 | run_id: string; | |
| 211 | job_id: string; | |
| 212 | repo_id: string; | |
| 213 | expired: boolean; | |
| 214 | created_at: string; | |
| 215 | updated_at: string; | |
| 216 | expires_at: string; | |
| 217 | head_branch?: string | null; | |
| 218 | head_sha?: string | null; | |
| 219 | }; | |
| 220 | ||
| 221 | export type ArtifactList = { total_count: number; artifacts: Artifact[] }; | |
| 222 | ||
| 223 | /** An artifact, where it is, and a signed token for the API's `/actions/toolkit/blobs/{blob}`. */ | |
| 224 | export type ArtifactBlob = { artifact: Artifact; object: string; blob: string }; | |
| 225 | ||
| 226 | export type ArtifactRetention = { days: number; maximum_allowed_days: number }; |