Commit Graph
15 Commits
Author SHA1 Message Date
Etienne StalmansandAli Waseem c9cc6cd835 chore: cleanup gh actions (#46454)
## I have read the
[CONTRIBUTING.md](https://github.com/supabase/supabase/blob/master/CONTRIBUTING.md)
file.

YES

## What kind of change does this PR introduce?

Chore, CI hardening


## Additional context

Hardens all GitHub actions to recommendations of
[zizmor](https://docs.zizmor.sh/audits/)

<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit

* **Chores**
* Disabled persistence of checkout credentials across many CI workflows
to reduce credential exposure.
* Upgraded GitHub App token tooling and tightened generated token
permissions for automation.
* Added cooldown/rate-limiting to dependency update automation to reduce
update churn.
* Adjusted workflow-level permissions, required secret inputs for
workflow callers, and refactored some job step logic.

<!-- review_stack_entry_start -->

[![Review Change
Stack](https://storage.googleapis.com/coderabbit_public_assets/review-stack-in-coderabbit-ui.svg)](https://app.coderabbit.ai/change-stack/supabase/supabase/pull/46454?utm_source=github_walkthrough&utm_medium=github&utm_campaign=change_stack)

<!-- review_stack_entry_end -->
<!-- end of auto-generated comment: release notes by coderabbit.ai -->

---------

Co-authored-by: Ali Waseem <waseema393@gmail.com>
2026-05-28 17:31:04 +02:00
Charis 3973cc3e5c chore: update github workflows (#39237) 2025-10-20 09:36:45 -04:00
blacksmith-sh[bot] 96f99014d8 .github/workflows: Migrate workflows to Blacksmith runners (#38549)
Migrate workflows to Blacksmith

Co-authored-by: blacksmith-sh[bot] <157653362+blacksmith-sh[bot]@users.noreply.github.com>
2025-09-09 18:27:43 +08:00
Stephen Morgan 431be5682b fix: review actions (#34648)
* fix: possible command injection in docs-lint

* fix: explicit permissions for github actions
2025-04-02 16:41:14 +13:00
Ivan Vasilov dd572efb0d chore: Switch repo to use pnpm (#29928)
* Fix some missing and duplicate dependencies.

* Fix the types for jest in ai-commands package.

* Replace all npm commands with pnpm. Add pnpm files and workspace links.

* Fix rimraf to work with pnpm.

* Refactor the github actions to work with pnpm.

* Delete package-lock.json.

* Fix the tailwind configs to not include node_modules.

* Fix random files.

* Add preinstall scripts to all packages.

* Fix the Dockerfile to work with pnpm.

* Update the DEVELOPERS documentation.
2024-12-20 13:07:20 +01:00
Kevin Grüneberg dd626768fd build: improve build times 2023-09-13 23:39:06 +02:00
Joshen Lim 7f689b1e78 ignore spelling for files under public/monaco-editor 2023-08-25 16:50:36 +08:00
Greg Richardson 8515db8839 fix: spell check exclude directories 2023-06-05 12:39:34 -06:00
Estee 5dff315066 modify avoid-typos github action to exclude only READMEs in i18n folder 2023-06-05 23:05:13 +08:00
Greg Richardson 574cf96b2f chore: ignore i18n for spell check 2023-05-30 16:30:34 -06:00
Greg Richardson 010fbbe91d fix(spell-check): github action exclude option 2023-05-29 20:45:16 -06:00
Greg Richardson ce4c2c5885 chore: ignore .ipynb files for spell check 2023-05-29 20:19:10 -06:00
Div Arora de0f4713b7 chore: exclude npm files from spell check 2023-04-12 14:37:02 +08:00
Abdul Rauf 96403bea8d ci: update actions/checkout to v3 2023-02-20 15:37:52 +08:00
Sara TavaresandHan Qiao 542d5202d3 chore(ci): avoid typos (#11373)
* Update prettier.yml

* Update DEVELOPERS.md

* Update prettier.yml

* Update DEVELOPERS.md

* Update .github/workflows/prettier.yml

* Create avoid-typos.yml

Co-authored-by: Han Qiao <sweatybridge@gmail.com>
2023-01-27 08:09:02 +08:00