Etienne Stalmans and Ali Waseem
c9cc6cd835
chore: cleanup gh actions ( #46454 )
...
## I have read the
[CONTRIBUTING.md](https://github.com/supabase/supabase/blob/master/CONTRIBUTING.md )
file.
YES
## What kind of change does this PR introduce?
Chore, CI hardening
## Additional context
Hardens all GitHub actions to recommendations of
[zizmor](https://docs.zizmor.sh/audits/ )
<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit
* **Chores**
* Disabled persistence of checkout credentials across many CI workflows
to reduce credential exposure.
* Upgraded GitHub App token tooling and tightened generated token
permissions for automation.
* Added cooldown/rate-limiting to dependency update automation to reduce
update churn.
* Adjusted workflow-level permissions, required secret inputs for
workflow callers, and refactored some job step logic.
<!-- review_stack_entry_start -->
[](https://app.coderabbit.ai/change-stack/supabase/supabase/pull/46454?utm_source=github_walkthrough&utm_medium=github&utm_campaign=change_stack )
<!-- review_stack_entry_end -->
<!-- end of auto-generated comment: release notes by coderabbit.ai -->
---------
Co-authored-by: Ali Waseem <waseema393@gmail.com >
2026-05-28 17:31:04 +02:00
Charis
3973cc3e5c
chore: update github workflows ( #39237 )
2025-10-20 09:36:45 -04:00
blacksmith-sh[bot]
96f99014d8
.github/workflows: Migrate workflows to Blacksmith runners ( #38549 )
...
Migrate workflows to Blacksmith
Co-authored-by: blacksmith-sh[bot] <157653362+blacksmith-sh[bot]@users.noreply.github.com>
2025-09-09 18:27:43 +08:00
Stephen Morgan
431be5682b
fix: review actions ( #34648 )
...
* fix: possible command injection in docs-lint
* fix: explicit permissions for github actions
2025-04-02 16:41:14 +13:00
Ivan Vasilov
dd572efb0d
chore: Switch repo to use pnpm ( #29928 )
...
* Fix some missing and duplicate dependencies.
* Fix the types for jest in ai-commands package.
* Replace all npm commands with pnpm. Add pnpm files and workspace links.
* Fix rimraf to work with pnpm.
* Refactor the github actions to work with pnpm.
* Delete package-lock.json.
* Fix the tailwind configs to not include node_modules.
* Fix random files.
* Add preinstall scripts to all packages.
* Fix the Dockerfile to work with pnpm.
* Update the DEVELOPERS documentation.
2024-12-20 13:07:20 +01:00
Kevin Grüneberg
dd626768fd
build: improve build times
2023-09-13 23:39:06 +02:00
Joshen Lim
7f689b1e78
ignore spelling for files under public/monaco-editor
2023-08-25 16:50:36 +08:00
Greg Richardson
8515db8839
fix: spell check exclude directories
2023-06-05 12:39:34 -06:00
Estee
5dff315066
modify avoid-typos github action to exclude only READMEs in i18n folder
2023-06-05 23:05:13 +08:00
Greg Richardson
574cf96b2f
chore: ignore i18n for spell check
2023-05-30 16:30:34 -06:00
Greg Richardson
010fbbe91d
fix(spell-check): github action exclude option
2023-05-29 20:45:16 -06:00
Greg Richardson
ce4c2c5885
chore: ignore .ipynb files for spell check
2023-05-29 20:19:10 -06:00
Div Arora
de0f4713b7
chore: exclude npm files from spell check
2023-04-12 14:37:02 +08:00
Abdul Rauf
96403bea8d
ci: update actions/checkout to v3
2023-02-20 15:37:52 +08:00
Sara Tavares and Han Qiao
542d5202d3
chore(ci): avoid typos ( #11373 )
...
* Update prettier.yml
* Update DEVELOPERS.md
* Update prettier.yml
* Update DEVELOPERS.md
* Update .github/workflows/prettier.yml
* Create avoid-typos.yml
Co-authored-by: Han Qiao <sweatybridge@gmail.com >
2023-01-27 08:09:02 +08:00