summaryrefslogtreecommitdiff
path: root/.github/workflows/cd.yml
blob: 7e684d7ea762c2843bd1a7361e06b82067e52d38 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
name: continious deployment

on:
  push:
    branches: [master]

jobs:
  cd:
    name: Deploy
    runs-on: ubuntu-latest
    timeout-minutes: 5

    steps:
      - name: Check out code
        uses: actions/checkout@v4

      - name: Set up Go
        uses: actions/setup-go@v5
        with:
          go-version: "1.23.2"

      # Runs CI again (doesn't seem to be possible to reuse CI as it's in a diff workflow)
      - name: Format code
        run: test -z $(go fmt ./...)

      - name: Install staticcheck
        run: go install honnef.co/go/tools/cmd/staticcheck@latest

      - name: Run static analysis (linting)
        run: staticcheck ./...

      - name: Run tests
        run: go test --cover ./...

      - name: Install gosec
        run: go install github.com/securego/gosec/v2/cmd/gosec@latest

      - name: Run gosec
        run: gosec ./...

      # Starts deployment
      - name: Build executable
        run: GOOS=linux GOARCH=amd64 go build -o ./eko-server ./cmd/server

      - name: Deploy to server
        uses: easingthemes/ssh-deploy@main
        with:
          SSH_PRIVATE_KEY: ${{ secrets.SSH_PRIVATE_KEY }}
          ARGS: "-avz"
          SOURCE: "eko-server"
          REMOTE_HOST: eko.kyren.codes
          REMOTE_USER: website
          TARGET: "/srv/website"
          SCRIPT_BEFORE: |
            whoami
            ls -al
          SCRIPT_AFTER: |
            whoami
            ls -al
            echo $RSYNC_STDOUT