diff --git a/.github/workflows/mega-linter.yml b/.github/workflows/mega-linter.yml new file mode 100644 index 0000000..86ed339 --- /dev/null +++ b/.github/workflows/mega-linter.yml @@ -0,0 +1,79 @@ +--- +# Mega-Linter GitHub Action configuration file +# More info at https://megalinter.io +name: Mega-Linter + +on: + # Trigger mega-linter at every push. Action will also be visible from Pull Requests to master + push: # Comment this line to trigger action only on pull-requests (not recommended if you don't pay for GH Actions) + pull_request: + branches: [master, main] + +env: # Comment env block if you do not want to apply fixes + # Apply linter fixes configuration + APPLY_FIXES: all # When active, APPLY_FIXES must also be defined as environment variable (in github/workflows/mega-linter.yml or other CI tool) + APPLY_FIXES_EVENT: pull_request # Decide which event triggers application of fixes in a commit or a PR (pull_request, push, all) + APPLY_FIXES_MODE: commit # If APPLY_FIXES is used, defines if the fixes are directly committed (commit) or posted in a PR (pull_request) + +jobs: + build: + name: Mega-Linter + runs-on: ubuntu-latest + steps: + # Git Checkout + - name: Checkout Code + uses: actions/checkout@v4 + with: + token: ${{ secrets.PAT || secrets.GITHUB_TOKEN }} + fetch-depth: 0 + + # Mega-Linter + - name: Mega-Linter + id: ml + # You can override Mega-Linter flavor used to have faster performances + # More info at https://megalinter.io/latest/flavors/ + uses: oxsecurity/megalinter/flavors/javascript@latest + env: + # All available variables are described in documentation + # https://megalinter.io/latest/config-file/ + VALIDATE_ALL_CODEBASE: true # Set ${{ github.event_name == 'push' && github.ref == 'refs/heads/master' }} to validate only diff with master branch + GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} + # ADD YOUR CUSTOM ENV VARIABLES HERE TO OVERRIDE VALUES OF .mega-linter.yml AT THE ROOT OF YOUR REPOSITORY + + # Upload Mega-Linter artifacts + - name: Archive production artifacts + if: success() || failure() + uses: actions/upload-artifact@v4 + with: + name: Mega-Linter reports + include-hidden-files: "true" + path: | + megalinter-reports + mega-linter.log + + # Create pull request if applicable (for now works only on PR from same repository, not from forks) + - name: Create Pull Request with applied fixes + id: cpr + if: steps.ml.outputs.has_updated_sources == 1 && (env.APPLY_FIXES_EVENT == 'all' || env.APPLY_FIXES_EVENT == github.event_name) && env.APPLY_FIXES_MODE == 'pull_request' && github.event.pull_request.head.repo.full_name == github.repository && !contains(github.event.head_commit.message, 'skip fix') + uses: peter-evans/create-pull-request@v6 + with: + token: ${{ secrets.PAT || secrets.GITHUB_TOKEN }} + commit-message: "[Mega-Linter] Apply linters automatic fixes" + title: "[Mega-Linter] Apply linters automatic fixes" + labels: bot + - name: Create PR output + if: steps.ml.outputs.has_updated_sources == 1 && (env.APPLY_FIXES_EVENT == 'all' || env.APPLY_FIXES_EVENT == github.event_name) && env.APPLY_FIXES_MODE == 'pull_request' && github.event.pull_request.head.repo.full_name == github.repository && !contains(github.event.head_commit.message, 'skip fix') + run: | + echo "Pull Request Number - ${{ steps.cpr.outputs.pull-request-number }}" + echo "Pull Request URL - ${{ steps.cpr.outputs.pull-request-url }}" + + # Push new commit if applicable (for now works only on PR from same repository, not from forks) + - name: Prepare commit + if: steps.ml.outputs.has_updated_sources == 1 && (env.APPLY_FIXES_EVENT == 'all' || env.APPLY_FIXES_EVENT == github.event_name) && env.APPLY_FIXES_MODE == 'commit' && github.ref != 'refs/heads/master' && github.event.pull_request.head.repo.full_name == github.repository && !contains(github.event.head_commit.message, 'skip fix') + run: sudo chown -Rc $UID .git/ + - name: Commit and push applied linter fixes + if: steps.ml.outputs.has_updated_sources == 1 && (env.APPLY_FIXES_EVENT == 'all' || env.APPLY_FIXES_EVENT == github.event_name) && env.APPLY_FIXES_MODE == 'commit' && github.ref != 'refs/heads/master' && github.event.pull_request.head.repo.full_name == github.repository && !contains(github.event.head_commit.message, 'skip fix') + uses: stefanzweifel/git-auto-commit-action@v5 + with: + branch: ${{ github.event.pull_request.head.ref || github.head_ref || github.ref }} + commit_message: "[Mega-Linter] Apply linters fixes" diff --git a/.mega-linter.yml b/.mega-linter.yml new file mode 100644 index 0000000..ce18c47 --- /dev/null +++ b/.mega-linter.yml @@ -0,0 +1,41 @@ +# Configuration file for Mega-Linter +# See all available variables at https://megalinter.io/latest/config-file/ and in linters documentation + +APPLY_FIXES: all # all, none, or list of linter keys +DEFAULT_BRANCH: main # Usually master or main +# ENABLE: # If you use ENABLE variable, all other languages/formats/tooling-formats will be disabled by default +# ENABLE_LINTERS: # If you use ENABLE_LINTERS variable, all other linters will be disabled by default +DISABLE: + - CSS + - EDITORCONFIG + - HTML + - JAVASCRIPT + - XML +DISABLE_LINTERS: + - JSON_JSONLINT + - MARKDOWN_MARKDOWN_LINK_CHECK + - SPELL_PROSELINT + - REPOSITORY_GIT_DIFF + - REPOSITORY_SEMGREP + - REPOSITORY_SECRETLINT + - TYPESCRIPT_STANDARD +DISABLE_ERRORS_LINTERS: + - MARKDOWN_MARKDOWN_LINK_CHECK + - REPOSITORY_GRYPE + - SPELL_LYCHEE +GITHUB_STATUS_REPORTER: false +MARKDOWN_MARKDOWN_LINK_CHECK_FILTER_REGEX_EXCLUDE: (README\.md) +BASH_SHELLCHECK_FILTER_REGEX_EXCLUDE: (husky) +YAML_V8R_DISABLE_ERRORS: true +FILTER_REGEX_EXCLUDE: "(vscode|defaults|workarounds)" +TYPESCRIPT_DEFAULT_STYLE: prettier +DOCKERFILE_HADOLINT_ARGUMENTS: "--ignore DL3007 --ignore DL3016 --ignore DL3018 --ignore DL4006" +REPOSITORY_GITLEAKS_DISABLE_ERRORS_IF_LESS_THAN: 11 +ACTION_ACTIONLINT_DISABLE_ERRORS_IF_LESS_THAN: 2 +SHOW_ELAPSED_TIME: true +FILEIO_REPORTER: false +SPELL_LYCHEE_ARGUMENTS: + - --accept + - "429" +SPELL_LYCHEE_UNSECURED_ENV_VARIABLES: + - GITHUB_TOKEN