Skip to content

g1t/services/security/wrangler.jsonc

49 lines2,076 bytesCodeBlame
1{
2 "$schema": "../../node_modules/wrangler/config-schema.json",
3 "name": "g1t-security",
4 "account_id": "1e6f2cffa3f445920836e8ebe446bb58",
5 "compatibility_date": "2026-09-26",
6 // Runs next to its database: a request makes several queries in turn,
7 // and each would otherwise cross the distance to it.
8 "placement": { "mode": "off" },
9 "main": "build/index.js",
10 "build": { "command": "node ../../scripts/build-rust-worker.mjs" },
11 // Reached only through service bindings.
12 "workers_dev": false,
13 "d1_databases": [
14 {
15 "binding": "DB",
16 "database_name": "g1t-security",
17 // Create with `wrangler d1 create g1t-security` and put its id here.
18 "database_id": "a7febbca-768a-4828-97b8-dd69b2636e1e",
19 "migrations_dir": "migrations"
20 }
21 ],
22 "services": [
23 { "binding": "IDENTITY", "service": "g1t-identity" },
24 { "binding": "REPOS", "service": "g1t-repos" },
25 { "binding": "WORK", "service": "g1t-work" },
26 { "binding": "RUNNER", "service": "g1t-runner" },
27 { "binding": "BILLING", "service": "g1t-billing" },
28 // The secrets a dependency update file's private registries name.
29 { "binding": "ACTIONS", "service": "g1t-actions" },
30 // Security events (webhooks, the inbox) and audit entries.
31 { "binding": "EVENTS", "service": "g1t-events" }
32 ],
33 // Pushes to a default branch (dependencies are read again), pushes too
34 // large to scan first (scanned after they land), security updates'
35 // branches (their pull requests open), pull requests merged, closed or
36 // failing checks (security updates move on), new repositories (their
37 // history is scanned once) and renamed workspaces.
38 "queues": {
39 "consumers": [{ "queue": "g1t-events-security", "max_batch_size": 10, "max_batch_timeout": 5 }]
40 },
41 // Continues history scans a page at a time, and reads every
42 // repository's dependencies again once a day (every 30 minutes); runs
43 // version updates that are due and looks at their pull requests (every 5).
44 "triggers": { "crons": ["*/30 * * * *", "*/5 * * * *"] },
45 "vars": {
46 "SITE_URL": "https://g1t.sh"
47 },
48 "observability": { "enabled": true }
49}