sqlite-web 0.7.2
gitea.db
action_run_job
35454 rows, showing page 710
Create
Query
access
access_token
action
action_artifact
action_run
action_run_index
action_run_job
action_runner
action_runner_token
action_schedule
action_schedule_spec
action_task
action_task_output
action_task_step
action_tasks_version
action_variable
app_state
attachment
auth_token
badge
branch
collaboration
comment
commit_status
commit_status_index
commit_status_summary
commit_sync_log
commit_sync_status
dbfs_data
dbfs_meta
deploy_key
email_address
email_hash
external_login_user
follow
gpg_key
gpg_key_import
hook_task
issue
issue_assignees
issue_content_history
issue_dependency
issue_index
issue_label
issue_pin
issue_user
issue_watch
label
language_stat
lfs_lock
lfs_meta_object
login_source
milestone
mirror
notice
notification
oauth2_application
oauth2_authorization_code
oauth2_grant
org_user
package
package_blob
package_blob_upload
package_cleanup_rule
package_file
package_property
package_version
project
project_board
project_issue
protected_branch
protected_tag
public_key
pull_auto_merge
pull_request
push_mirror
reaction
release
renamed_branch
repo_archiver
repo_hidden_file
repo_indexer_status
repo_license
repo_redirect
repo_topic
repo_transfer
repo_unit
repository
review
review_state
secret
session
sqlite_sequence
star
stopwatch
system_setting
task
team
team_invite
team_repo
team_unit
team_user
topic
tracked_time
two_factor
upload
user
user_badge
user_blocking
user_open_id
user_redirect
user_setting
version
watch
webauthn_credential
webhook
Toggle helper tables
Structure
Content
Query
Insert
Drop
Import
Export
Bulk Delete
id
run_id
repo_id
owner_id
commit_sha
is_fork_pull_request
name
attempt
workflow_payload
job_id
needs
runs_on
task_id
status
started
stopped
created
updated
raw_concurrency
is_concurrency_evaluated
concurrency_group
concurrency_cancel
35451
24465
116
5
52be23b7ac8d6495e69cac05c1339c0e51c94044
0
M1 identity transitional workspace (IdP static → E
M1 identity transitional workspace (IdP static → E2 → governance)
...
1
name: Platform "on": pull_request:
name: Platform "on": pull_request: push: branches: [main] workflow_dispatch: env: CANDIDATE_TAG: ${{ github.sha }}-${{ github.run_id }}-${{ github.run_attempt }} GOV_REPORT_RUNNER: gitea-actions PNPM_VERSION: 9.15.9 jobs: identity: name: M1 identity transitional workspace (IdP static → E2 → governance) runs-on: ubuntu-latest env: # 库名前缀由 identity/package.json name 派生(enterprise_idp*);Redis 必须 db 0(老框架 C22) DATABASE_URL: postgresql://postgres:postgres@127.0.0.1:5432/enterprise_idp_ci?schema=public REDIS_URL: redis://127.0.0.1:6379/0 if: ${{ github.event_name != 'pull_request' || github.event.pull_request.head.repo.full_name == github.repository }} steps: - uses: actions/checkout@v4 with: fetch-depth: "0" - name: Enable pnpm run: | corepack enable corepack prepare pnpm@${PNPM_VERSION} --activate - uses: actions/setup-node@v4 with: cache: pnpm cache-dependency-path: identity/pnpm-lock.yaml node-version: "20" - name: Private registry auth (temporary userconfig; identity 目前无私包依赖,保持同一配置步骤以便后续 pin) uses: ./.github/actions/private-npm with: token: ${{ secrets.GITEA_NPM_TOKEN }} - name: Install identity workspace (frozen lockfile) run: pnpm --dir identity install --frozen-lockfile - name: Generate Prisma clients run: pnpm --dir identity prisma:generate - name: IdP static sub-checks (independent of runtime / UI reports) run: pnpm identity:check:static - name: IdP real DB acceptance (255 tests, serialized) run: pnpm identity:check:runtime - name: Install Playwright browser run: pnpm --dir identity --filter web exec playwright install --with-deps chromium - name: IdP UI acceptance (12 cases) run: pnpm identity:check:ui - name: IdP final governance aggregation (same checkout, fresh runtime / UI reports) run: pnpm identity:check:governance - if: always() name: Upload identity evidence uses: actions/upload-artifact@v3 with: if-no-files-found: warn name: platform-identity-${{ env.CANDIDATE_TAG }} path: identity/reports/*.latest.json retention-days: "30" timeout-minutes: "50" services: postgres: image: postgres:16 env: POSTGRES_DB: enterprise_idp_ci POSTGRES_PASSWORD: postgres POSTGRES_USER: postgres ports: - 5432:5432 options: --health-cmd "pg_isready -U postgres -d enterprise_idp_ci" --health-interval 5s --health-timeout 5s --health-retries 20 redis: image: redis:7 ports: - 6379:6379 options: --health-cmd "redis-cli ping" --health-interval 5s --health-timeout 5s --health-retries 20 permissions: contents: read
...
identity
["static"]
["ubuntu-latest"]
30130
4
1790214414
1790214414
1790214360
1790214414
1
0
Edit
Delete
35452
24465
116
5
52be23b7ac8d6495e69cac05c1339c0e51c94044
0
Runtime image build + SBOM (+ cosign when a key is
Runtime image build + SBOM (+ cosign when a key is provided)
...
1
name: Platform "on": pull_request:
name: Platform "on": pull_request: push: branches: [main] workflow_dispatch: env: CANDIDATE_TAG: ${{ github.sha }}-${{ github.run_id }}-${{ github.run_attempt }} GOV_REPORT_RUNNER: gitea-actions PNPM_VERSION: 9.15.9 jobs: image: name: Runtime image build + SBOM (+ cosign when a key is provided) runs-on: ubuntu-latest if: ${{ github.event_name != 'pull_request' || github.event.pull_request.head.repo.full_name == github.repository }} steps: - uses: actions/checkout@v4 with: fetch-depth: "0" - name: Enable pnpm run: | corepack enable corepack prepare pnpm@${PNPM_VERSION} --activate - uses: actions/setup-node@v4 with: node-version: "20" - name: Private registry auth (temporary userconfig) uses: ./.github/actions/private-npm with: token: ${{ secrets.GITEA_NPM_TOKEN }} - name: Resolve npmrc for BuildKit secret (never printed) run: | cfg="${RUNNER_TEMP}/platform-npmrc-resolved" umask 077 printf '@juhai:registry=https://gitea.g-hi.com/api/packages/luoanwu/npm/\n//gitea.g-hi.com/api/packages/luoanwu/npm/:_authToken=%s\n' "${GITEA_NPM_TOKEN}" > "${cfg}" echo "PLATFORM_NPMRC=${cfg}" >> "${GITHUB_ENV}" - name: Build runtime image from git archive HEAD:runtime (reports/image-digest.json) run: node governance/build-image.mjs --context head --npmrc "${PLATFORM_NPMRC}" - name: Install syft (pinned) and generate SPDX SBOM run: | curl -sSfL https://raw.githubusercontent.com/anchore/syft/main/install.sh | sh -s -- -b "${RUNNER_TEMP}/bin" v1.20.0 PATH="${RUNNER_TEMP}/bin:${PATH}" node governance/sbom.mjs - name: Install cosign (pinned) uses: sigstore/cosign-installer@v3 with: cosign-release: v2.4.1 - name: Sign image when COSIGN_PRIVATE_KEY is provided (otherwise explicit skip) run: | if [ -n "${COSIGN_PRIVATE_KEY}" ]; then umask 077; printf '%s' "${COSIGN_PRIVATE_KEY}" > "${RUNNER_TEMP}/cosign.key" COSIGN_KEY="${RUNNER_TEMP}/cosign.key" node governance/sign-image.mjs else node governance/sign-image.mjs fi env: COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }} COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }} - if: always() name: Upload image evidence uses: actions/upload-artifact@v3 with: if-no-files-found: warn name: platform-image-${{ env.CANDIDATE_TAG }} path: | reports/image-digest.json reports/sbom.spdx.json reports/sbom.latest.json reports/signature.json retention-days: "30" timeout-minutes: "40" permissions: contents: read
...
image
["static"]
["ubuntu-latest"]
30131
4
1790214416
1790214416
1790214360
1790214416
1
0
Edit
Delete
35453
24465
116
5
52be23b7ac8d6495e69cac05c1339c0e51c94044
0
Release candidate verification + manifest
1
name: Platform "on": pull_request:
name: Platform "on": pull_request: push: branches: [main] workflow_dispatch: env: CANDIDATE_TAG: ${{ github.sha }}-${{ github.run_id }}-${{ github.run_attempt }} GOV_REPORT_RUNNER: gitea-actions PNPM_VERSION: 9.15.9 jobs: candidate: name: Release candidate verification + manifest runs-on: ubuntu-latest if: always() steps: - uses: actions/checkout@v4 with: fetch-depth: "0" - name: Enable pnpm run: | corepack enable corepack prepare pnpm@${PNPM_VERSION} --activate - uses: actions/setup-node@v4 with: node-version: "20" - name: Download static evidence uses: actions/download-artifact@v3 with: name: platform-static-${{ env.CANDIDATE_TAG }} path: candidate/static continue-on-error: true - name: Download runtime evidence uses: actions/download-artifact@v3 with: name: platform-runtime-${{ env.CANDIDATE_TAG }} path: candidate/runtime/runtime/reports continue-on-error: true - name: Download identity evidence uses: actions/download-artifact@v3 with: name: platform-identity-${{ env.CANDIDATE_TAG }} path: candidate/identity/identity/reports continue-on-error: true - name: Download port-conformance evidence uses: actions/download-artifact@v3 with: name: platform-port-conformance-${{ env.CANDIDATE_TAG }} path: candidate/port-conformance/reports continue-on-error: true - id: verify name: Verify candidate (per-report sourceSha / dirty / status / digest; missing → ineligible) run: node governance/verify-candidate.mjs --candidate candidate --sha "${{ github.sha }}" --run-id "${{ github.run_id }}" --attempt "${{ github.run_attempt }}" --out reports/release-candidate.latest.json continue-on-error: true - name: Download image and full SBOM evidence for the same candidate uses: actions/download-artifact@v3 with: name: platform-image-${{ env.CANDIDATE_TAG }} path: reports - name: Release Manifest (known facts, status partial until all deliverables exist) run: node governance/release-manifest.mjs - if: always() name: Upload candidate evidence uses: actions/upload-artifact@v3 with: if-no-files-found: error name: platform-candidate-${{ env.CANDIDATE_TAG }} path: | reports/release-candidate.latest.json reports/release-manifest.latest.json retention-days: "30" - if: always() name: Propagate upstream results and candidate eligibility run: | echo "public-static=${{ needs.public-static.result }} static=${{ needs.static.result }} runtime=${{ needs.runtime.result }} identity=${{ needs.identity.result }} verify=${{ steps.verify.outcome }}" test "${{ needs.public-static.result }}" = "success" test "${{ needs.static.result }}" = "success" test "${{ needs.unit.result }}" = "success" test "${{ needs.port-conformance.result }}" = "success" test "${{ needs.runtime.result }}" = "success" test "${{ needs.identity.result }}" = "success" test "${{ needs.image.result }}" = "success" test "${{ steps.verify.outcome }}" = "success" timeout-minutes: "10" permissions: contents: read
...
candidate
["public-static","static","uni
["public-static","static","unit","port-conformance","runtime","identity","image"]
...
["ubuntu-latest"]
30132
2
1790214418
1790214434
1790214360
1790214435
1
0
Edit
Delete
35454
24466
117
5
ebbfc054af615c7dd7a050d4f93f3e871d2a24d8
0
Governance tests (report-only until act_runner is
Governance tests (report-only until act_runner is enabled)
...
1
name: Governance "on": push: b
name: Governance "on": push: branches: [main] pull_request: workflow_dispatch: env: FOUNDATION_REPORT_DIR: ${{ runner.temp }}/foundation-reports PNPM_VERSION: 9.15.9 jobs: governance-tests: name: Governance tests (report-only until act_runner is enabled) runs-on: ubuntu-latest steps: - uses: actions/checkout@v4 - name: Enable pnpm run: | corepack enable corepack prepare pnpm@${PNPM_VERSION} --activate - uses: actions/setup-node@v4 with: node-version: "22" - name: Governance tests run: pnpm --dir 平台治理/基础 test continue-on-error: true - name: Governance gates (all gates run to completion; not blocking yet) run: pnpm --dir 平台治理/基础 check continue-on-error: true - name: Tracked-secrets gate (root scope; the only gate whose CI result is meaningful without nested repos) run: node 平台治理/基础/scripts/check-tracked-secrets.mjs --scope=root timeout-minutes: "20" permissions: contents: read
...
governance-tests
null
["ubuntu-latest"]
30133
2
1790214507
1790215542
1790214505
1790215542
0
0
Edit
Delete
«
‹
Page 710 / 710
›
»