sqlite-web 0.7.2
gitea.db
action_run_job
35502 rows, showing page 711
Create
Query
access
access_token
action
action_artifact
action_run
action_run_index
action_run_job
action_runner
action_runner_token
action_schedule
action_schedule_spec
action_task
action_task_output
action_task_step
action_tasks_version
action_variable
app_state
attachment
auth_token
badge
branch
collaboration
comment
commit_status
commit_status_index
commit_status_summary
commit_sync_log
commit_sync_status
dbfs_data
dbfs_meta
deploy_key
email_address
email_hash
external_login_user
follow
gpg_key
gpg_key_import
hook_task
issue
issue_assignees
issue_content_history
issue_dependency
issue_index
issue_label
issue_pin
issue_user
issue_watch
label
language_stat
lfs_lock
lfs_meta_object
login_source
milestone
mirror
notice
notification
oauth2_application
oauth2_authorization_code
oauth2_grant
org_user
package
package_blob
package_blob_upload
package_cleanup_rule
package_file
package_property
package_version
project
project_board
project_issue
protected_branch
protected_tag
public_key
pull_auto_merge
pull_request
push_mirror
reaction
release
renamed_branch
repo_archiver
repo_hidden_file
repo_indexer_status
repo_license
repo_redirect
repo_topic
repo_transfer
repo_unit
repository
review
review_state
secret
session
sqlite_sequence
star
stopwatch
system_setting
task
team
team_invite
team_repo
team_unit
team_user
topic
tracked_time
two_factor
upload
user
user_badge
user_blocking
user_open_id
user_redirect
user_setting
version
watch
webauthn_credential
webhook
Toggle helper tables
Structure
Content
Query
Insert
Drop
Import
Export
Bulk Delete
id
run_id
repo_id
owner_id
commit_sha
is_fork_pull_request
name
attempt
workflow_payload
job_id
needs
runs_on
task_id
status
started
stopped
created
updated
raw_concurrency
is_concurrency_evaluated
concurrency_group
concurrency_cancel
35501
24472
116
5
fe8bcd0129eeaf04a2b5a2b33de1cef0aa27f0b0
0
Runtime image build + SBOM (+ cosign when a key is
Runtime image build + SBOM (+ cosign when a key is provided)
...
1
name: Platform "on": pull_request:
name: Platform "on": pull_request: push: branches: [main] workflow_dispatch: env: CANDIDATE_TAG: ${{ github.sha }}-${{ github.run_id }}-${{ github.run_attempt }} GOV_REPORT_RUNNER: gitea-actions PNPM_VERSION: 9.15.9 jobs: image: name: Runtime image build + SBOM (+ cosign when a key is provided) runs-on: ubuntu-latest if: ${{ github.event_name != 'pull_request' || github.event.pull_request.head.repo.full_name == github.repository }} steps: - uses: actions/checkout@v4 with: fetch-depth: "0" - name: Enable pnpm run: | corepack enable corepack prepare pnpm@${PNPM_VERSION} --activate - uses: actions/setup-node@v4 with: node-version: "20" - name: Private registry auth (temporary userconfig) uses: ./.github/actions/private-npm with: token: ${{ secrets.GITEA_NPM_TOKEN }} - name: Resolve npmrc for BuildKit secret (never printed) run: | cfg="${RUNNER_TEMP}/platform-npmrc-resolved" umask 077 printf '@juhai:registry=https://gitea.g-hi.com/api/packages/luoanwu/npm/\n//gitea.g-hi.com/api/packages/luoanwu/npm/:_authToken=%s\n' "${GITEA_NPM_TOKEN}" > "${cfg}" echo "PLATFORM_NPMRC=${cfg}" >> "${GITHUB_ENV}" - name: Build runtime image from git archive HEAD:runtime (reports/image-digest.json) run: node governance/build-image.mjs --context head --npmrc "${PLATFORM_NPMRC}" - name: Install syft (pinned) and generate SPDX SBOM run: | curl -sSfL https://raw.githubusercontent.com/anchore/syft/main/install.sh | sh -s -- -b "${RUNNER_TEMP}/bin" v1.20.0 PATH="${RUNNER_TEMP}/bin:${PATH}" node governance/sbom.mjs - name: Install cosign (pinned) uses: sigstore/cosign-installer@v3 with: cosign-release: v2.4.1 - name: Sign image when COSIGN_PRIVATE_KEY is provided (otherwise explicit skip) run: | if [ -n "${COSIGN_PRIVATE_KEY}" ]; then umask 077; printf '%s' "${COSIGN_PRIVATE_KEY}" > "${RUNNER_TEMP}/cosign.key" COSIGN_KEY="${RUNNER_TEMP}/cosign.key" node governance/sign-image.mjs else node governance/sign-image.mjs fi env: COSIGN_PRIVATE_KEY: ${{ secrets.COSIGN_PRIVATE_KEY }} COSIGN_PASSWORD: ${{ secrets.COSIGN_PASSWORD }} - if: always() name: Upload image evidence uses: actions/upload-artifact@v3 with: if-no-files-found: warn name: platform-image-${{ env.CANDIDATE_TAG }} path: | reports/image-digest.json reports/sbom.spdx.json reports/sbom.latest.json reports/signature.json retention-days: "30" timeout-minutes: "40" permissions: contents: read
...
image
["static"]
["ubuntu-latest"]
30180
4
1790223736
1790223736
1790223681
1790223736
1
0
Edit
Delete
35502
24472
116
5
fe8bcd0129eeaf04a2b5a2b33de1cef0aa27f0b0
0
Release candidate verification + manifest
1
name: Platform "on": pull_request:
name: Platform "on": pull_request: push: branches: [main] workflow_dispatch: env: CANDIDATE_TAG: ${{ github.sha }}-${{ github.run_id }}-${{ github.run_attempt }} GOV_REPORT_RUNNER: gitea-actions PNPM_VERSION: 9.15.9 jobs: candidate: name: Release candidate verification + manifest runs-on: ubuntu-latest if: always() steps: - uses: actions/checkout@v4 with: fetch-depth: "0" - name: Enable pnpm run: | corepack enable corepack prepare pnpm@${PNPM_VERSION} --activate - uses: actions/setup-node@v4 with: node-version: "20" - name: Download static evidence uses: actions/download-artifact@v3 with: name: platform-static-${{ env.CANDIDATE_TAG }} path: candidate/static continue-on-error: true - name: Download runtime evidence uses: actions/download-artifact@v3 with: name: platform-runtime-${{ env.CANDIDATE_TAG }} path: candidate/runtime/runtime/reports continue-on-error: true - name: Download identity evidence uses: actions/download-artifact@v3 with: name: platform-identity-${{ env.CANDIDATE_TAG }} path: candidate/identity/identity/reports continue-on-error: true - name: Download port-conformance evidence uses: actions/download-artifact@v3 with: name: platform-port-conformance-${{ env.CANDIDATE_TAG }} path: candidate/port-conformance/reports continue-on-error: true - id: verify name: Verify candidate (per-report sourceSha / dirty / status / digest; missing → ineligible) run: node governance/verify-candidate.mjs --candidate candidate --sha "${{ github.sha }}" --run-id "${{ github.run_id }}" --attempt "${{ github.run_attempt }}" --out reports/release-candidate.latest.json continue-on-error: true - name: Download image and full SBOM evidence for the same candidate uses: actions/download-artifact@v3 with: name: platform-image-${{ env.CANDIDATE_TAG }} path: reports - name: Release Manifest (known facts, status partial until all deliverables exist) run: node governance/release-manifest.mjs - if: always() name: Upload candidate evidence uses: actions/upload-artifact@v3 with: if-no-files-found: error name: platform-candidate-${{ env.CANDIDATE_TAG }} path: | reports/release-candidate.latest.json reports/release-manifest.latest.json retention-days: "30" - if: always() name: Propagate upstream results and candidate eligibility run: | echo "public-static=${{ needs.public-static.result }} static=${{ needs.static.result }} runtime=${{ needs.runtime.result }} identity=${{ needs.identity.result }} verify=${{ steps.verify.outcome }}" test "${{ needs.public-static.result }}" = "success" test "${{ needs.static.result }}" = "success" test "${{ needs.unit.result }}" = "success" test "${{ needs.port-conformance.result }}" = "success" test "${{ needs.runtime.result }}" = "success" test "${{ needs.identity.result }}" = "success" test "${{ needs.image.result }}" = "success" test "${{ steps.verify.outcome }}" = "success" timeout-minutes: "10" permissions: contents: read
...
candidate
["public-static","static","uni
["public-static","static","unit","port-conformance","runtime","identity","image"]
...
["ubuntu-latest"]
30181
2
1790223738
1790223754
1790223681
1790223755
1
0
Edit
Delete
«
‹
Page 711 / 711
›
»