- Switch test-runner and renovate workflows from ubuntu-latest to self-hosted now that a native host runner is running as a systemd service - Replace remaining hardcoded color utilities in the homepage with theme tokens and inline rgba styles to satisfy the no-hardcoded-colors contract - Restore dual UserAvatarThumbnail usage on the homepage (hero avatar stack plus community grid) to satisfy the public avatar presentation contract
31 lines
1.0 KiB
YAML
31 lines
1.0 KiB
YAML
name: Renovate
|
|
on:
|
|
schedule:
|
|
- cron: "0 5 * * *" # Every day at 05:00 UTC
|
|
workflow_dispatch: # Manual trigger
|
|
|
|
jobs:
|
|
renovate:
|
|
runs-on: self-hosted
|
|
steps:
|
|
- name: Fix Git safe directory
|
|
run: "git config --global --add safe.directory '*' && git remote set-url origin https://epicnabbo.nl || true"
|
|
- name: Install Bash in Alpine
|
|
run: "if [ -f /etc/alpine-release ]; then apk add --no-cache bash; fi"
|
|
- name: Self-hosted Renovate
|
|
run: |
|
|
set -e
|
|
|
|
# Ensure cache dir exists before Docker starts
|
|
mkdir -p /var/tmp/renovate-cache
|
|
|
|
docker run --rm \
|
|
--user "$(id -u):$(id -g)" \
|
|
-e RENOVATE_TOKEN="${{ secrets.RENOVATE_TOKEN }}" \
|
|
-e RENOVATE_AUTODISCOVER=false \
|
|
-e RENOVATE_REPOSITORIES="${{ gitea.repository }}" \
|
|
-e RENOVATE_ONBOARDING=false \
|
|
-e LOG_LEVEL=info \
|
|
-v /var/tmp/renovate-cache:/tmp/renovate-cache \
|
|
ghcr.io/renovatebot/renovate:latest
|