Sitelet https://github.com/nextcloud/.github/pull/802
Skip to content

feat: Add auto build workflows for shipped apps - #802

Open
artonge wants to merge 1 commit into
masterfrom
artonge/feat/npm-auto-build
Open

artonge wants to merge 1 commit into
masterfrom
artonge/feat/npm-auto-build

Conversation

@artonge

@artonge artonge commented Oct 1, 2026

Copy link
Copy Markdown
Contributor

No description provided.

Comment thread workflow-templates/node-dist-unchanged.yml Outdated
Comment thread workflow-templates/update-node-dist.yml Outdated
Comment thread workflow-templates/update-node-dist.yml
Comment thread workflow-templates/update-node-dist.yml Outdated
@artonge
artonge force-pushed the artonge/feat/npm-auto-build branch 2 times, most recently from 09c1904 to 142dbb6 Compare October 2, 2026 12:46
Signed-off-by: Louis Chmn <louis@chmn.me>
@artonge
artonge force-pushed the artonge/feat/npm-auto-build branch from 142dbb6 to ff350a0 Compare October 2, 2026 12:50
steps:
- name: Get changed files
id: changed-files
uses: tj-actions/changed-files@dcc7a0cba800f454d79fff4b993e8c3555bcc0a8 # v45.0.7

@nickvergessen nickvergessen Oct 5, 2026 •

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This is a compromised version and no longer associated with the git tag…
https://github.com/tj-actions/changed-files/releases?page=2#release-v45.0.7

See the warning on v46.0.0 https://github.com/tj-actions/changed-files/releases/tag/v46.0.0

Security Alert: A critical security issue was identified in this action due to a compromised commit.

This commit has been removed from all tags and branches, and necessary measures have been implemented to prevent similar issues in the future.

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

In all other such cases we use dorny/paths-filter sounds as a safer approach to stick with what we know and use already

Comment on lines +42 to +46
uses: skjnldsv/read-package-engines-version-actions@06d6baf7d8f41934ab630e97d9e6c0bc9c9ac5e4 # v3
id: versions
with:
fallbackNode: '^20'
fallbackNpm: '^9'

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Let's go with #803 ?

steps:
- name: Get changed files
id: changed-files
uses: tj-actions/changed-files@dcc7a0cba800f454d79fff4b993e8c3555bcc0a8 # v45.0.7

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

In all other such cases we use dorny/paths-filter sounds as a safer approach to stick with what we know and use already

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants