Compare commits

..
4 Commits
Author SHA1 Message Date
Pavel Zwerschke 84fcc9f320 ? 2025-12-16 14:52:35 +01:00
Pavel Zwerschke 292519c071 test ubuntu-24.04-arm 2025-12-16 14:49:27 +01:00
Pavel Zwerschke a4caa61122 WIP 2025-12-16 14:00:00 +01:00
Pavel Zwerschke f18b03747b feat: Adjust debug log message for activate-environment 2025-12-16 13:58:50 +01:00
29 changed files with 79714 additions and 84625 deletions
-1
View File
@@ -1,2 +1 @@
dist/** merge=binary -diff linguist-generated=true
pnpm-lock.yaml merge=binary linguist-generated=true
-7
View File
@@ -1,7 +0,0 @@
# yaml-language-server: $schema=https://raw.githubusercontent.com/octo-sts/app/refs/heads/main/pkg/octosts/octosts.TrustPolicy.json
issuer: https://token.actions.githubusercontent.com
subject: repo:prefix-dev/setup-pixi:ref:refs/heads/main
permissions:
contents: write
pull_requests: write
-4
View File
@@ -8,8 +8,6 @@ updates:
gh-actions:
patterns:
- '*'
cooldown:
default-days: 7
- package-ecosystem: npm
directory: /
schedule:
@@ -18,5 +16,3 @@ updates:
nodejs:
patterns:
- '*'
cooldown:
default-days: 7
+17 -26
View File
@@ -15,15 +15,15 @@ jobs:
build:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
- name: Install pnpm
uses: pnpm/action-setup@ea17c68df8912ef543352723c149a84f56e3d413 # v6.1.0
uses: pnpm/action-setup@41ff72655975bd51cab0327fa583b6e92b6d3061 # v4.4.0
with:
version: 10
version: 9
- name: Install Node.js
uses: actions/setup-node@820762786026740c76f36085b0efc47a31fe5020 # v7.0.0
uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0
with:
node-version: 20
cache: pnpm
@@ -35,22 +35,19 @@ jobs:
run: pnpm build
- name: Lint
run: pnpm lint:check
- name: Format
run: pnpm fmt:check
run: pnpm lint
reference-latest-version-in-readme:
name: Reference latest version in README
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
- name: Assert latest setup-pixi version is mentioned in README
run: |
set -euo pipefail
latest_version="$(jq -r '.version' package.json)"
count_expected=24
count_expected=21
count_actual="$(grep -c "setup-pixi@v$latest_version" README.md || true)"
if [ "$count_actual" -ne "$count_expected" ]; then
echo "::error file=README.md::Expected $count_expected mentions of \`setup-pixi@v$latest_version\` in README.md, but found $count_actual."
@@ -62,10 +59,10 @@ jobs:
if: github.event_name == 'schedule' || github.event_name == 'workflow_dispatch'
runs-on: ubuntu-latest
permissions:
contents: read
id-token: write
contents: write
pull-requests: write
steps:
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
- name: Assert latest pixi version is mentioned in README
run: |
@@ -81,17 +78,11 @@ jobs:
env:
GH_TOKEN: ${{ secrets.GITHUB_TOKEN }}
- uses: octo-sts/action@f603d3be9d8dd9871a265776e625a27b00effe05 # v1.1.1
id: octo-sts
with:
scope: ${{ github.repository }}
identity: write
- name: Create pull request
uses: peter-evans/create-pull-request@5f6978faf089d4d20b00c7766989d076bb2fc7f1 # v8.1.1
uses: peter-evans/create-pull-request@84ae59a2cdc2258d6fa0732dd66352dddae2a412 # v7.0.9
if: failure() && github.ref_name == 'main'
with:
token: ${{ steps.octo-sts.outputs.token }}
token: ${{ secrets.GITHUB_TOKEN }}
commit-message: Reference latest Pixi version in README
title: Reference latest Pixi version in README
labels: ignore for release
@@ -99,15 +90,15 @@ jobs:
check-dist:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
- name: Install pnpm
uses: pnpm/action-setup@ea17c68df8912ef543352723c149a84f56e3d413 # v6.1.0
uses: pnpm/action-setup@41ff72655975bd51cab0327fa583b6e92b6d3061 # v4.4.0
with:
version: 10
version: 9
- name: Install Node.js
uses: actions/setup-node@820762786026740c76f36085b0efc47a31fe5020 # v7.0.0
uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0
with:
node-version: 20
cache: pnpm
@@ -128,7 +119,7 @@ jobs:
id: diff
# If index.js or post.js are different than expected, upload the expected version as an artifact
- uses: actions/upload-artifact@043fb46d1a93c77aae656e7c1c64a875d1fc6a0a # v7.0.1
- uses: actions/upload-artifact@330a01c490aca151604b8cf639adc76d48f6c5d4 # v5.0.0
if: ${{ failure() && steps.diff.conclusion == 'failure' }}
with:
name: dist
+3 -3
View File
@@ -12,8 +12,8 @@ jobs:
release:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1
- uses: Quantco/ui-actions/version-metadata@5bfb8cebf0801e07c6a1c208a35b41637a3ff7fa # v1.0.20
- uses: actions/checkout@1af3b93b6815bc44a9784bd300feb67ff0d1eeb3 # v6.0.0
- uses: Quantco/ui-actions/version-metadata@cd71d2a0e30b25569f6d723e57acca83347e58fc # v1.0.18
id: version-metadata
with:
file: ./package.json
@@ -24,7 +24,7 @@ jobs:
TAG_NAME: v${{ steps.version-metadata.outputs.newVersion }}
- name: Create release
if: steps.version-metadata.outputs.changed == 'true'
uses: softprops/action-gh-release@efb35369e0ad2afab669f228072c1b0d510eae64 # v3.0.3
uses: softprops/action-gh-release@5be0e66d93ac7ed76da52eca8bb058f665c3a5fe # v2.4.2
with:
generate_release_notes: true
tag_name: v${{ steps.version-metadata.outputs.newVersion }}
+1153 -1313
View File
File diff suppressed because it is too large Load Diff
-10
View File
@@ -1,10 +0,0 @@
{
"$schema": "./node_modules/oxfmt/configuration_schema.json",
"tabWidth": 2,
"printWidth": 120,
"singleQuote": true,
"trailingComma": "none",
"semi": false,
"sortPackageJson": false,
"ignorePatterns": ["dist", "pnpm-lock.yaml", "pixi.lock", "**/*.toml"]
}
-23
View File
@@ -1,23 +0,0 @@
{
"$schema": "./node_modules/oxlint/configuration_schema.json",
"plugins": ["eslint", "typescript", "unicorn", "oxc", "node"],
"categories": {
"correctness": "error"
},
"options": {
"typeAware": true,
"typeCheck": true,
"denyWarnings": true
},
"ignorePatterns": ["dist"],
"rules": {
"no-unused-vars": ["error", { "argsIgnorePattern": "^_" }],
"typescript/no-explicit-any": "error",
"typescript/no-unsafe-argument": "error",
"typescript/no-unsafe-assignment": "error",
"typescript/no-unsafe-call": "error",
"typescript/no-unsafe-member-access": "error",
"typescript/no-unsafe-return": "error",
"typescript/prefer-nullish-coalescing": ["error", { "ignoreConditionalTests": true }]
}
}
+3
View File
@@ -0,0 +1,3 @@
dist
pnpm-lock.yaml
pixi.lock
+1 -1
View File
@@ -1,3 +1,3 @@
{
"editor.defaultFormatter": "oxc.oxc-vscode"
"editor.defaultFormatter": "esbenp.prettier-vscode"
}
+23 -79
View File
@@ -23,9 +23,9 @@ GitHub Action to set up the [pixi](https://github.com/prefix-dev/pixi) package m
## Usage
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
pixi-version: v0.66.0
pixi-version: v0.59.0
cache: true
auth-host: prefix.dev
@@ -35,7 +35,7 @@ GitHub Action to set up the [pixi](https://github.com/prefix-dev/pixi) package m
> [!WARNING]
> Since pixi is not yet stable, the API of this action may change between minor versions.
> Please pin the versions of this action to a specific version (i.e., `prefix-dev/setup-pixi@v0.11.0`) to avoid breaking changes.
> Please pin the versions of this action to a specific version (i.e., `prefix-dev/setup-pixi@v0.9.3`) to avoid breaking changes.
> You can automatically update the version of this action by using [Dependabot](https://docs.github.com/en/code-security/dependabot/working-with-dependabot/keeping-your-actions-up-to-date-with-dependabot).
>
> Put the following in your `.github/dependabot.yml` file to enable Dependabot for your GitHub Actions:
@@ -51,8 +51,6 @@ GitHub Action to set up the [pixi](https://github.com/prefix-dev/pixi) package m
> dependencies:
> patterns:
> - '*'
> cooldown:
> default-days: 7
> ```
## Features
@@ -79,7 +77,7 @@ In order to not exceed the [10 GB cache size limit](https://docs.github.com/en/a
This can be done by setting the `cache-write` argument.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
cache: true
cache-write: ${{ github.event_name == 'push' && github.ref_name == 'main' }}
@@ -124,7 +122,7 @@ test:
environment: [py311, py312]
steps:
- uses: actions/checkout@v4
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
environments: ${{ matrix.environment }}
```
@@ -134,7 +132,7 @@ test:
The following example will install both the `py311` and the `py312` environment on the runner.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
# separated by spaces
environments: >-
@@ -157,7 +155,7 @@ For instance, the `keyring`, or `gcloud` executables. The following example show
By default, global environments are not cached. You can enable caching by setting the `global-cache` input to `true`.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
global-environments: |
google-cloud-sdk
@@ -190,7 +188,7 @@ Specify the token using the `auth-token` input argument.
This form of authentication (bearer token in the request headers) is mainly used at [prefix.dev](https://prefix.dev).
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
auth-host: prefix.dev
auth-token: ${{ secrets.PREFIX_DEV_TOKEN }}
@@ -202,7 +200,7 @@ Specify the username and password using the `auth-username` and `auth-password`
This form of authentication (HTTP Basic Auth) is used in some enterprise environments with [artifactory](https://jfrog.com/artifactory) for example.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
auth-host: custom-artifactory.com
auth-username: ${{ secrets.PIXI_USERNAME }}
@@ -215,7 +213,7 @@ Specify the conda-token using the `auth-conda-token` input argument.
This form of authentication (token is encoded in URL: `https://my-quetz-instance.com/t/<token>/get/custom-channel`) is used at [anaconda.org](https://anaconda.org) or with [quetz instances](https://github.com/mamba-org/quetz).
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
auth-host: anaconda.org # or my-quetz-instance.com
auth-conda-token: ${{ secrets.CONDA_TOKEN }}
@@ -227,7 +225,7 @@ Specify the S3 key pair using the `auth-access-key-id` and `auth-secret-access-k
You can also specify the session token using the `auth-session-token` input argument.
```yaml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
auth-host: s3://my-s3-bucket
auth-s3-access-key-id: ${{ secrets.ACCESS_KEY_ID }}
@@ -238,36 +236,12 @@ You can also specify the session token using the `auth-session-token` input argu
See the [pixi documentation](https://pixi.sh/latest/advanced/s3) for more information about S3 authentication.
#### Logging out
By default, the credentials stay available to all subsequent steps of the job and the action runs
`pixi auth logout <auth-host>` in its post step at the end of the job.
You can change this behavior with the `auth-logout` input:
- `post` (default): log out in the post step at the end of the job.
- `after-install`: log out at the end of the action, after `pixi install` has completed.
Use this if you only want pixi to use the authenticated remote channel during the action's own install step,
so that later steps cannot reach the private channel anymore.
- `never`: never log out, for example on self-hosted runners where the credentials should persist between jobs.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
with:
auth-host: prefix.dev
auth-token: ${{ secrets.PREFIX_DEV_TOKEN }}
auth-logout: after-install
```
> [!NOTE]
> `auth-logout` replaces the removed `persist-credentials` input.
> Use `auth-logout: after-install` instead of `persist-credentials: false` and `auth-logout: never` instead of `persist-credentials: true`.
#### PyPI keyring provider
You can specify whether to use keyring to look up credentials for PyPI.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
pypi-keyring-provider: subprocess # one of 'subprocess', 'disabled'
```
@@ -335,7 +309,7 @@ To this end, `setup-pixi` adds all environment variables set when executing `pix
As a result, all installed binaries can be accessed without having to call `pixi run`.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
activate-environment: true
```
@@ -343,7 +317,7 @@ As a result, all installed binaries can be accessed without having to call `pixi
If you are installing multiple environments, you will need to specify the name of the environment that you want to be activated.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
environments: >-
py311
@@ -360,7 +334,7 @@ You can specify whether `setup-pixi` should run `pixi install --frozen` or `pixi
See the [official documentation](https://pixi.sh/latest/reference/cli/pixi/install/#update-options) for more information about the `--frozen` and `--locked` flags.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
locked: true
# or
@@ -379,7 +353,7 @@ The first one is the debug logging of the action itself.
This can be enabled by running the action with the `RUNNER_DEBUG` environment variable set to `true`.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
env:
RUNNER_DEBUG: true
```
@@ -397,7 +371,7 @@ The second type is the debug logging of the pixi executable.
This can be specified by setting the `log-level` input.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
# one of `q`, `default`, `v`, `vv`, or `vvv`.
log-level: vvv
@@ -418,12 +392,12 @@ If you set `post-cleanup` to `true`, the action will delete the following files:
- the rattler cache
- other rattler files in `~/.rattler`
If nothing is specified, `post-cleanup` will default to `false`.
If nothing is specified, `post-cleanup` will default to `true`.
On self-hosted runners, you also might want to alter the default pixi install location to a temporary location. You can use `pixi-bin-path: ${{ runner.temp }}/bin/pixi` to do this.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
post-cleanup: true
# ${{ runner.temp }}\Scripts\pixi.exe on Windows
@@ -439,47 +413,17 @@ You can also use a preinstalled local version of pixi on the runner by not setti
This can be overwritten by setting the `manifest-path` input argument.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
manifest-path: pyproject.toml
```
### Working directory for monorepos
If you're working with a monorepo where your pixi project is in a subdirectory, you can use the `working-directory` input to specify where pixi should look for manifest files (`pixi.toml` or `pyproject.toml`).
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
with:
working-directory: ./packages/my-project
```
This will make pixi look for `pixi.toml` or `pyproject.toml` in the `./packages/my-project` directory instead of the repository root. All pixi commands will be executed from this working directory.
> [!NOTE]
> The `working-directory` input only affects commands run by `setup-pixi` itself.
> For subsequent `run:` steps, you need to set the working directory separately:
>
> ```yml
> - run: pixi run test
> working-directory: ./packages/my-project
> ```
You can combine `working-directory` with `manifest-path` if needed:
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
with:
working-directory: ./packages/my-project
manifest-path: custom-pixi.toml
```
### Only install pixi
If you only want to install pixi and not install the current project, you can use the `run-install` option.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
run-install: false
```
@@ -490,7 +434,7 @@ You can also download pixi from a custom URL by setting the `pixi-url` input arg
Optionally, you can combine this with the `pixi-url-headers` input argument to supply additional headers for the download request, such as a bearer token.
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
pixi-url: https://pixi-mirror.example.com/releases/download/v0.48.0/pixi-x86_64-unknown-linux-musl
pixi-url-headers: '{"Authorization": "Bearer ${{ secrets.PIXI_MIRROR_BEARER_TOKEN }}"}'
@@ -506,7 +450,7 @@ It will be rendered with the following variables:
By default, `pixi-url` is equivalent to the following template:
```yml
- uses: prefix-dev/setup-pixi@v0.11.0
- uses: prefix-dev/setup-pixi@v0.9.3
with:
pixi-url: |
{{#if latest~}}
+2 -16
View File
@@ -18,10 +18,6 @@ inputs:
One of `q`, `default`, `v`, `vv`, or `vvv`.
manifest-path:
description: Path to the manifest file (i.e., `pixi.toml`) to use for the pixi CLI. Defaults to `pixi.toml`.
working-directory:
description: |
Working directory to use for pixi commands. If specified, pixi will look for manifest files (pixi.toml or pyproject.toml)
in this directory instead of the repository root. Useful for monorepos where pixi projects are in subdirectories.
run-install:
description: Whether to run `pixi install` after installing pixi. Defaults to `true`.
environments:
@@ -63,7 +59,7 @@ inputs:
description: |
Host to use for authentication. If not set, pixi is not authenticating.
Requires `auth-token` or `auth-conda-token` or `auth-username` and `auth-password` to be set.
See https://pixi.prefix.dev/latest/deployment/authentication/
See https://prefix.dev/docs/pixi/authentication
auth-token:
description: Token to use for authentication.
auth-username:
@@ -78,23 +74,13 @@ inputs:
description: Secret access key to use for S3 authentication.
auth-s3-session-token:
description: Session token to use for S3 authentication.
auth-logout:
description: |
When to run `pixi auth logout <auth-host>`. Requires `auth-host`.
options: post, after-install, never
- `post` (default): The credentials stay available to all subsequent steps and are removed in the post step at the end of the job.
- `after-install`: The credentials are removed at the end of this action, so that later steps cannot reach the private channel anymore.
- `never`: The credentials are never removed.
persist-credentials:
description: Removed, use `auth-logout` instead.
deprecationMessage: '`persist-credentials` has been removed, use `auth-logout: after-install` (instead of `false`) or `auth-logout: never` (instead of `true`).'
pypi-keyring-provider:
description: |
Specifies whether to use keyring to look up credentials for PyPI.
options: disabled, subprocess
post-cleanup:
description: |
If the action should clean up after itself. Defaults to `false`.
If the action should clean up after itself. Defaults to `true`.
If `true`, the pixi environment, the pixi binary and the rattler files in ~/.rattler and ~/.cache/rattler are removed.
runs:
Generated Vendored
+63763 -64348
View File
File diff suppressed because one or more lines are too long
Generated Vendored
+12593 -15494
View File
File diff suppressed because one or more lines are too long
+42
View File
@@ -0,0 +1,42 @@
// @ts-check
import eslint from '@eslint/js'
import tseslint from 'typescript-eslint'
export default tseslint.config(
eslint.configs.recommended,
...tseslint.configs.strictTypeChecked,
...tseslint.configs.stylisticTypeChecked,
{
ignores: ['dist/*']
},
{
languageOptions: {
parserOptions: {
project: true,
tsconfigRootDir: import.meta.dirname
}
}
},
{
rules: {
'@typescript-eslint/no-unused-vars': [
'error',
{
argsIgnorePattern: '^_'
}
],
'@typescript-eslint/prefer-nullish-coalescing': [
'error',
{
ignoreConditionalTests: true
}
]
}
},
// disable type checking for config files as they aren't in the TS root
{
files: ['eslint.config.mjs', 'prettier.config.mjs', 'tsup.config.js'],
...tseslint.configs.disableTypeChecked
}
)
+19 -19
View File
@@ -1,15 +1,14 @@
{
"name": "setup-pixi",
"version": "0.11.0",
"version": "0.9.3",
"private": true,
"description": "Action to set up the pixi package manager.",
"scripts": {
"build": "tsup",
"dev": "tsup --watch",
"lint": "oxlint --fix",
"lint:check": "oxlint",
"fmt": "oxfmt",
"fmt:check": "oxfmt --check"
"eslint": "eslint .",
"lint": "pnpm eslint && prettier -c .",
"lint:fix": "eslint . --fix && prettier -w ."
},
"repository": {
"type": "git",
@@ -23,24 +22,25 @@
"author": "Pavel Zwerschke <pavelzw@gmail.com>",
"license": "BSD-3-Clause",
"dependencies": {
"@actions/cache": "^6.2.0",
"@actions/core": "^3.0.1",
"@actions/exec": "^3.0.0",
"@actions/io": "^3.0.2",
"@actions/tool-cache": "^4.0.0",
"handlebars": "^4.7.9",
"smol-toml": "^1.9.0",
"@actions/cache": "^4.1.0",
"@actions/core": "^1.11.1",
"@actions/exec": "^1.1.1",
"@actions/io": "^2.0.0",
"@actions/tool-cache": "^2.0.2",
"handlebars": "^4.7.8",
"smol-toml": "^1.5.2",
"untildify": "^6.0.0",
"which": "^7.0.0",
"zod": "^4.6.5"
"which": "^6.0.0",
"zod": "^4.1.13"
},
"devDependencies": {
"@types/node": "^26.6.2",
"@eslint/js": "^9.39.1",
"@types/node": "^24.10.1",
"@types/which": "^3.0.4",
"oxfmt": "^0.71.0",
"oxlint": "^1.86.0",
"oxlint-tsgolint": "^7.0.2003",
"eslint": "^9.39.1",
"prettier": "^3.7.3",
"tsup": "^8.5.1",
"typescript": "^7.0.2"
"typescript": "^5.9.3",
"typescript-eslint": "^8.48.0"
}
}
+1334 -1045
View File
File diff suppressed because it is too large Load Diff
-9
View File
@@ -1,9 +0,0 @@
allowBuilds:
esbuild: true
overrides:
undici: ^6.28.0
rollup: ^4.59.0
fast-xml-parser: ^5.10.1
minimatch@3>brace-expansion: ^1.1.18
minimatch@10>brace-expansion: ^5.0.9
+9
View File
@@ -0,0 +1,9 @@
const config = {
tabWidth: 2,
printWidth: 120,
singleQuote: true,
trailingComma: 'none',
semi: false
}
export default config
+4 -2
View File
@@ -14,6 +14,7 @@ const splitEnvironment = (shellHook: ShellHook): [Record<string, string>, string
if (pathEnvs.length > 0) {
const caseSensitivePathName = pathEnvs[0]
const path = shellHook.environment_variables[caseSensitivePathName]
// eslint-disable-next-line @typescript-eslint/no-dynamic-delete
delete shellHook.environment_variables[caseSensitivePathName]
return [shellHook.environment_variables, path]
}
@@ -34,11 +35,11 @@ const getNewPathComponents = (path: string): string[] => {
if (!currentPath) {
throw new Error('Unable to obtain current PATH from environment')
}
core.debug(`Found current path '${currentPath}'`)
core.debug(`Got new path '${path}'`)
if (!path.endsWith(currentPath)) {
throw new Error('Unable to handle environment activation which does not only append to PATH')
}
core.debug(`Found current path '${currentPath}'`)
core.debug(`Got new path '${path}'`)
const newPath = path.slice(0, path.length - currentPath.length)
return newPath.split(osPath.delimiter).filter((p) => p.length > 0)
}
@@ -47,6 +48,7 @@ export const activateEnvironment = async (environment: string): Promise<void> =>
// First, obtain the environment variables that would be set by environment activation
const envOption = environment === 'default' ? '' : `-e ${environment}`
const shellHookOutput = await executeGetOutput(pixiCmd(`shell-hook ${envOption} --json`), { silent: true })
core.debug(`Got shell hook output '${shellHookOutput.stdout}'`)
const shellHook = JSON.parse(shellHookOutput.stdout) as ShellHook
// Then, we split the environment variables into the special 'PATH' and all others
+7 -5
View File
@@ -32,14 +32,15 @@ export const generateProjectCacheKey = async (cacheKeyPrefix: string) => {
core.debug(`lockfilePathSha: ${lockfilePathSha}`)
const environments = sha256(options.environments?.join(' ') ?? '')
core.debug(`environments: ${environments}`)
// since the lockfile path is not necessarily absolute, we need to include the working directory in the cache key
const cwdSha = sha256(options.workingDirectory)
// since the lockfile path is not necessarily absolute, we need to include the cwd in the cache key
const cwdSha = sha256(process.cwd())
core.debug(`cwdSha: ${cwdSha}`)
const sha = sha256(lockfileSha + environments + pixiSha + lockfilePathSha + cwdSha)
core.debug(`sha: ${sha}`)
return `${cacheKeyPrefix}${getCondaArch()}-${sha}`
} catch (err: unknown) {
throw new Error(`Failed to generate cache key`, { cause: err })
// eslint-disable-next-line @typescript-eslint/restrict-template-expressions
throw new Error(`Failed to generate cache key: ${err}`)
}
}
@@ -53,7 +54,8 @@ export const generateGlobalCacheKey = async (cacheKeyPrefix: string) => {
core.debug(`sha: ${sha}`)
return `${cacheKeyPrefix}${getCondaArch()}-${getYearMonth()}-${sha}`
} catch (err: unknown) {
throw new Error(`Failed to generate cache key`, { cause: err })
// eslint-disable-next-line @typescript-eslint/restrict-template-expressions
throw new Error(`Failed to generate cache key: ${err}`)
}
}
@@ -116,7 +118,7 @@ async function _saveCache(
const cacheId = await cache.saveCache([cachePath], cacheKey, undefined, false)
core.info(`Saved cache with ID "${cacheId.toString()}"`)
} catch (err: unknown) {
// oxlint-disable-next-line typescript/restrict-template-expressions
// eslint-disable-next-line @typescript-eslint/restrict-template-expressions
core.error(`Error saving ${type} cache: ${err}`)
}
})
-14
View File
@@ -48,19 +48,6 @@ const pixiLogin = async () => {
core.debug(`Logging in to ${auth.host} with conda token`)
await execute(pixiCmd(`auth login --conda-token ${auth.condaToken} ${auth.host}`, false))
}
await execute(pixiCmd('auth status', false))
})
}
const pixiLogout = async () => {
const auth = options.auth
if (auth?.logout !== 'after-install') {
core.debug('Skipping pixi logout.')
return
}
await core.group('Logging out of private channel', async () => {
core.debug(`Logging out of ${auth.host}`)
await execute(pixiCmd(`auth logout ${auth.host}`, false))
})
}
@@ -176,7 +163,6 @@ const run = async () => {
if (options.activatedEnvironment) {
await activateEnv(options.activatedEnvironment)
}
await pixiLogout()
}
const main = async () => {
+16 -64
View File
@@ -15,7 +15,6 @@ type Inputs = Readonly<{
pixiUrlHeaders?: NodeJS.Dict<string>
logLevel?: LogLevel
manifestPath?: string
workingDirectory?: string
runInstall?: boolean
environments?: string[]
activateEnvironment?: string
@@ -35,7 +34,6 @@ type Inputs = Readonly<{
authS3AccessKeyId?: string
authS3SecretAccessKey?: string
authS3SessionToken?: string
authLogout?: AuthLogout
pypiKeyringProvider?: 'disabled' | 'subprocess'
postCleanup?: boolean
globalEnvironments?: string[]
@@ -49,7 +47,6 @@ export interface PixiSource {
type Auth = {
host: string
logout: AuthLogout
} & (
| {
token: string
@@ -83,7 +80,6 @@ export type Options = Readonly<{
downloadPixi: boolean
logLevel: LogLevel
manifestPath: string
workingDirectory: string
pixiLockFile: string
runInstall: boolean
environments?: string[]
@@ -104,9 +100,6 @@ const pyprojectPath = 'pyproject.toml'
const logLevelSchema = z.enum(['q', 'default', 'v', 'vv', 'vvv'])
export type LogLevel = z.infer<typeof logLevelSchema>
const authLogoutSchema = z.enum(['post', 'after-install', 'never'])
export type AuthLogout = z.infer<typeof authLogoutSchema>
const pypiKeyringProviderSchema = z.enum(['disabled', 'subprocess'])
export type PypiKeyringProvider = z.infer<typeof pypiKeyringProviderSchema>
@@ -245,9 +238,6 @@ const validateInputs = (inputs: Inputs): void => {
if (inputs.authToken || inputs.authUsername || inputs.authCondaToken || inputs.authS3AccessKeyId) {
throw new Error('You need to specify auth-host')
}
if (inputs.authLogout) {
throw new Error('Cannot use auth-logout without specifying auth-host')
}
}
if (inputs.runInstall === false && inputs.environments) {
throw new Error('Cannot specify environments without running install')
@@ -291,43 +281,29 @@ const inferOptions = (inputs: Inputs): Options => {
inputs.pixiBinPath
)
const logLevel = inputs.logLevel ?? (core.isDebug() ? 'vv' : 'default')
// Determine the working directory - resolve to absolute path if provided
const workingDirectory = inputs.workingDirectory ? path.resolve(untildify(inputs.workingDirectory)) : process.cwd()
core.debug(`Working directory: ${workingDirectory}`)
// infer manifest path from inputs or default to pixi.toml or pyproject.toml depending on what is present in the working directory.
const pixiTomlPathInWorkingDir = path.join(workingDirectory, pixiPath)
const pyprojectTomlPathInWorkingDir = path.join(workingDirectory, pyprojectPath)
let manifestPath = pixiTomlPathInWorkingDir // default
// infer manifest path from inputs or default to pixi.toml or pyproject.toml depending on what is present in the repo.
let manifestPath = pixiPath // default
if (inputs.manifestPath) {
// If manifest path is provided, resolve it relative to working directory if it's not absolute
manifestPath = path.isAbsolute(inputs.manifestPath)
? path.resolve(untildify(inputs.manifestPath))
: path.resolve(workingDirectory, inputs.manifestPath)
manifestPath = path.resolve(untildify(inputs.manifestPath))
} else {
if (existsSync(pixiTomlPathInWorkingDir)) {
manifestPath = pixiTomlPathInWorkingDir
core.debug(`Found pixi.toml at: ${manifestPath}`)
} else if (existsSync(pyprojectTomlPathInWorkingDir)) {
if (existsSync(pixiPath)) {
manifestPath = pixiPath
} else if (existsSync(pyprojectPath)) {
try {
const fileContent = readFileSync(pyprojectTomlPathInWorkingDir, 'utf-8')
const fileContent = readFileSync(pyprojectPath, 'utf-8')
const parsedContent: Record<string, unknown> = parse(fileContent)
// Test if the tool.pixi table is present in the pyproject.toml file, if so, use it as the manifest file.
if (parsedContent.tool && typeof parsedContent.tool === 'object' && 'pixi' in parsedContent.tool) {
core.debug(`The tool.pixi table found, using ${pyprojectTomlPathInWorkingDir} as manifest file.`)
manifestPath = pyprojectTomlPathInWorkingDir
core.debug(`The tool.pixi table found, using ${pyprojectPath} as manifest file.`)
manifestPath = pyprojectPath
}
} catch (error) {
core.error(`Error while trying to read ${pyprojectTomlPathInWorkingDir} file.`)
core.error(`Error while trying to read ${pyprojectPath} file.`)
core.error(error as Error)
}
} else if (runInstall) {
core.warning(
`Could not find any manifest file in ${workingDirectory}. Defaulting to ${pixiTomlPathInWorkingDir}.`
)
core.warning(`Could not find any manifest file. Defaulting to ${pixiPath}.`)
}
}
@@ -363,36 +339,31 @@ const inferOptions = (inputs: Inputs): Options => {
: undefined
const frozen = inputs.frozen ?? false
const locked = inputs.locked ?? (lockFileAvailable && !frozen)
const authLogout = inputs.authLogout ?? 'post'
const auth = !inputs.authHost
? undefined
: ((inputs.authToken
? {
host: inputs.authHost,
token: inputs.authToken,
logout: authLogout
token: inputs.authToken
}
: inputs.authCondaToken
? {
host: inputs.authHost,
condaToken: inputs.authCondaToken,
logout: authLogout
condaToken: inputs.authCondaToken
}
: inputs.authUsername
? {
host: inputs.authHost,
username: inputs.authUsername,
password: inputs.authPassword,
logout: authLogout
password: inputs.authPassword
}
: {
host: inputs.authHost,
s3AccessKeyId: inputs.authS3AccessKeyId,
s3SecretAccessKey: inputs.authS3SecretAccessKey,
s3SessionToken: inputs.authS3SessionToken,
logout: authLogout
s3SessionToken: inputs.authS3SessionToken
}) as Auth)
const postCleanup = inputs.postCleanup ?? false
const postCleanup = inputs.postCleanup ?? true
const pypiKeyringProvider = inputs.pypiKeyringProvider
return {
globalEnvironments: inputs.globalEnvironments,
@@ -401,7 +372,6 @@ const inferOptions = (inputs: Inputs): Options => {
downloadPixi,
logLevel,
manifestPath,
workingDirectory,
pixiLockFile,
runInstall,
environments: inputs.environments,
@@ -426,11 +396,6 @@ const assertOptions = (_options: Options) => {
}
const getOptions = () => {
if (inputOrEnvironmentVariable('persist-credentials') !== undefined) {
throw new Error(
'`persist-credentials` has been removed, use `auth-logout: after-install` (instead of `false`) or `auth-logout: never` (instead of `true`).'
)
}
const inputs: Inputs = {
pixiVersion: parseOrUndefined(
'pixi-version',
@@ -445,7 +410,6 @@ const getOptions = () => {
'log-level must be one of `q`, `default`, `v`, `vv`, `vvv`.'
),
manifestPath: parseOrUndefined('manifest-path', z.string()),
workingDirectory: parseOrUndefined('working-directory', z.string()),
runInstall: parseOrUndefinedJSON('run-install', z.boolean()),
environments: parseOrUndefinedList('environments', z.string()),
activateEnvironment: parseOrUndefined('activate-environment', z.string()),
@@ -465,11 +429,6 @@ const getOptions = () => {
authS3AccessKeyId: parseOrUndefined('auth-s3-access-key-id', z.string()),
authS3SecretAccessKey: parseOrUndefined('auth-s3-secret-access-key', z.string()),
authS3SessionToken: parseOrUndefined('auth-s3-session-token', z.string()),
authLogout: parseOrUndefined(
'auth-logout',
authLogoutSchema,
'auth-logout must be one of `post`, `after-install`, `never`.'
),
pypiKeyringProvider: parseOrUndefined('pypi-keyring-provider', pypiKeyringProviderSchema),
globalEnvironments: parseOrUndefinedMultilineList('global-environments', z.string()),
postCleanup: parseOrUndefinedJSON('post-cleanup', z.boolean())
@@ -500,10 +459,3 @@ try {
}
export const options = _options
export const assertAuth = () => {
const auth = options.auth
if (!auth) {
throw new Error('Authentication configuration is missing.')
}
return auth
}
+4 -22
View File
@@ -5,7 +5,6 @@ import os from 'os'
import { exit } from 'process'
import * as core from '@actions/core'
import { options } from './options'
import { execute, pixiCmd } from './util'
const removeEmptyParentDirs = (dirPath: string): Promise<void> => {
if (existsSync(dirPath)) {
@@ -53,6 +52,7 @@ const cleanupEnv = () => {
const determineCacheDir = (): string => {
// rattler uses dirs::cache_dir https://docs.rs/dirs/latest/dirs/fn.cache_dir.html
if (os.platform() === 'win32') {
// eslint-disable-next-line @typescript-eslint/no-non-null-assertion
return process.env.LOCALAPPDATA!
}
if (os.platform() === 'linux') {
@@ -72,31 +72,13 @@ const cleanupRattler = () => {
])
}
const pixiLogout = async () => {
const auth = options.auth
if (auth?.logout !== 'post') {
core.debug('Skipping pixi logout.')
return
}
if (!existsSync(options.pixiBinPath)) {
core.debug(`Skipping pixi logout, pixi binary ${options.pixiBinPath} does not exist.`)
return
}
await core.group('Logging out of private channel', async () => {
core.debug(`Logging out of ${auth.host}`)
await execute(pixiCmd(`auth logout ${auth.host}`, false))
})
}
const run = async () => {
// needs to happen before the cleanup since that removes the pixi binary
await pixiLogout()
const run = () => {
const postCleanup = options.postCleanup
if (postCleanup) {
await Promise.all([cleanupPixiBin(), cleanupEnv(), cleanupRattler()])
return
return Promise.all([cleanupPixiBin(), cleanupEnv(), cleanupRattler()])
}
core.debug('Skipping post-cleanup.')
return Promise.resolve()
}
run()
+7 -16
View File
@@ -1,3 +1,4 @@
import type { BinaryLike } from 'crypto'
import { createHash } from 'crypto'
import os from 'os'
import * as core from '@actions/core'
@@ -20,7 +21,6 @@ export const getCondaArch = () => {
'linux-x64': 'linux-64',
'linux-arm64': 'linux-aarch64',
'linux-ppc64': 'linux-ppc64le',
'linux-riscv64': 'linux-riscv64',
'win32-x64': 'win-64',
'win32-arm64': 'win-arm64'
}
@@ -33,21 +33,15 @@ export const getCondaArch = () => {
const getPlatform = () => {
const platform = os.platform()
const arch = os.arch()
switch (platform) {
case 'darwin':
return 'apple-darwin'
case 'linux':
if (arch == 'riscv64') {
// https://github.com/prefix-dev/pixi/issues/6903
return 'unknown-linux-gnu'
}
return 'unknown-linux-musl'
case 'win32':
return 'pc-windows-msvc'
default:
throw new Error(`Unsupported platform: ${platform}`)
throw new Error(`Unsupported architecture: ${platform}`)
}
}
@@ -58,8 +52,6 @@ const getArch = () => {
return 'x86_64'
case 'arm64':
return 'aarch64'
case 'riscv64':
return 'riscv64gc'
default:
throw new Error(`Unsupported architecture: ${arch}`)
}
@@ -78,11 +70,11 @@ export const renderPixiUrl = (urlTemplate: string, version: string) => {
})
}
export const sha256 = (s: string | NodeJS.ArrayBufferView) => {
export const sha256 = (s: BinaryLike) => {
return createHash('sha256').update(s).digest('hex')
}
export const sha256Short = (s: string | NodeJS.ArrayBufferView) => {
export const sha256Short = (s: BinaryLike) => {
return sha256(s).slice(0, 7)
}
@@ -90,15 +82,14 @@ export const execute = (cmd: string[]) => {
core.debug(`Executing: \`${cmd.toString()}\``)
// needs escaping if cmd[0] contains spaces
// https://github.com/prefix-dev/setup-pixi/issues/184#issuecomment-2765724843
return exec(`"${cmd[0]}"`, cmd.slice(1), { cwd: options.workingDirectory })
return exec(`"${cmd[0]}"`, cmd.slice(1))
}
export const executeGetOutput = (cmd: string[], execOptions: ExecOptions) => {
export const executeGetOutput = (cmd: string[], options?: ExecOptions) => {
core.debug(`Executing: \`${cmd.toString()}\``)
// needs escaping if cmd[0] contains spaces
// https://github.com/prefix-dev/setup-pixi/issues/184#issuecomment-2765724843
const defaultOptions = { cwd: options.workingDirectory }
return getExecOutput(`"${cmd[0]}"`, cmd.slice(1), { ...defaultOptions, ...execOptions })
return getExecOutput(`"${cmd[0]}"`, cmd.slice(1), options)
}
export const pixiCmd = (command: string, withManifestPath = true) => {
+710 -2087
View File
File diff suppressed because it is too large Load Diff
+2 -11
View File
@@ -1,19 +1,10 @@
[workspace]
name = "test-default"
channels = ["conda-forge"]
platforms = [
"linux-64",
"linux-aarch64",
"linux-riscv64",
"linux-ppc64le",
"osx-64",
"osx-arm64",
"win-64",
"win-arm64",
]
platforms = ["linux-64", "linux-aarch64", "osx-64", "osx-arm64", "win-64"]
[tasks]
test = "python -c 'print(\"Hello world!\")'"
[dependencies]
python = "3.14.*"
python = "3.11.*"
+2 -4
View File
@@ -1,14 +1,12 @@
{
"compilerOptions": {
"target": "ES2022" /* Specify ECMAScript target version: 'ES3' (default), 'ES5', 'ES2015', 'ES2016', 'ES2017', 'ES2018', 'ES2019' or 'ESNEXT'. */,
"target": "ES2020" /* Specify ECMAScript target version: 'ES3' (default), 'ES5', 'ES2015', 'ES2016', 'ES2017', 'ES2018', 'ES2019' or 'ESNEXT'. */,
"module": "CommonJS" /* Specify module code generation: 'none', 'commonjs', 'amd', 'system', 'umd', 'es2015', or 'ESNext'. */,
"outDir": "./lib" /* Redirect output structure to the directory. */,
"rootDir": "./src" /* Specify the root directory of input files. Use to control the output directory structure with --outDir. */,
"strict": true /* Enable all strict type-checking options. */,
"noImplicitAny": true /* Raise error on expressions and declarations with an implied 'any' type. */,
"esModuleInterop": true /* Enables emit interoperability between CommonJS and ES Modules via creation of namespace objects for all imports. Implies 'allowSyntheticDefaultImports'. */,
"types": ["node"],
"skipLibCheck": true
"esModuleInterop": true /* Enables emit interoperability between CommonJS and ES Modules via creation of namespace objects for all imports. Implies 'allowSyntheticDefaultImports'. */
},
"exclude": ["node_modules", "**/*.test.ts"]
}
-2
View File
@@ -12,8 +12,6 @@ export default defineConfig({
sourcemap: false,
platform: 'node',
minify: false,
// shim `import.meta.url` in CJS output; some deps (e.g. @azure/storage-common) rely on it
shims: true,
outExtension() {
return {
js: '.js'