Merge pull request 'fix(ci): gitleaks через бинарник (Gitea runner) (#10)' (#11) from fix/gitleaks-gitea#10 into main
Release / GoReleaser (push) Skipped
Release Please / Release Please (push) Skipped
Tests / Secret scan (gitleaks) (pull_request) Successful in 6s
Tests / Test (Go 1.25) (push) Successful in 21s
Tests / Secret scan (gitleaks) (push) Successful in 4s
Tests / Test (Go stable) (push) Successful in 27s
Tests / Test (Go 1.25) (pull_request) Successful in 27s
Tests / Test (Go stable) (pull_request) Successful in 31s
Release / GoReleaser (push) Skipped
Release Please / Release Please (push) Skipped
Tests / Secret scan (gitleaks) (pull_request) Successful in 6s
Tests / Test (Go 1.25) (push) Successful in 21s
Tests / Secret scan (gitleaks) (push) Successful in 4s
Tests / Test (Go stable) (push) Successful in 27s
Tests / Test (Go 1.25) (pull_request) Successful in 27s
Tests / Test (Go stable) (pull_request) Successful in 31s
This commit was merged in pull request #11.
This commit is contained in:
@@ -35,14 +35,25 @@ jobs:
|
|||||||
echo "RANGE=$RANGE" >> "$GITHUB_ENV"
|
echo "RANGE=$RANGE" >> "$GITHUB_ENV"
|
||||||
echo "Scanning range: $RANGE"
|
echo "Scanning range: $RANGE"
|
||||||
|
|
||||||
# docker:// actions mount the workspace at /github/workspace — not the
|
# Install the gitleaks binary instead of a docker action: the
|
||||||
# host path from ${{ github.workspace }} (that path does not exist in-container).
|
# docker://zricethezav/gitleaks action hardcodes /github/workspace,
|
||||||
|
# which does not exist on the Gitea (act) runner. $GITHUB_WORKSPACE is
|
||||||
|
# the checkout dir on BOTH runners (GitHub and Gitea act). Mirrors the
|
||||||
|
# fix applied to 2dph (issue #142).
|
||||||
- name: Gitleaks (diff-only, fail on leak)
|
- name: Gitleaks (diff-only, fail on leak)
|
||||||
uses: docker://zricethezav/gitleaks:latest
|
|
||||||
env:
|
env:
|
||||||
GITLEAKS_RANGE: ${{ env.RANGE }}
|
GITLEAKS_RANGE: ${{ env.RANGE }}
|
||||||
with:
|
run: |
|
||||||
args: detect --source /github/workspace --log-opts="$GITLEAKS_RANGE" --redact --verbose
|
set -euo pipefail
|
||||||
|
curl -fsSLo /tmp/gitleaks.tar.gz \
|
||||||
|
https://github.com/gitleaks/gitleaks/releases/download/v8.30.1/gitleaks_8.30.1_linux_x64.tar.gz
|
||||||
|
tar -xzf /tmp/gitleaks.tar.gz -C /tmp gitleaks
|
||||||
|
chmod +x /tmp/gitleaks
|
||||||
|
/tmp/gitleaks detect \
|
||||||
|
--source "$GITHUB_WORKSPACE" \
|
||||||
|
--log-opts="$GITLEAKS_RANGE" \
|
||||||
|
--redact \
|
||||||
|
--verbose
|
||||||
|
|
||||||
test:
|
test:
|
||||||
name: Test (Go ${{ matrix.go }})
|
name: Test (Go ${{ matrix.go }})
|
||||||
|
|||||||
@@ -1,3 +1,3 @@
|
|||||||
{
|
{
|
||||||
".": "0.14.0"
|
".": "0.15.0"
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -16,6 +16,22 @@ adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html).
|
|||||||
|
|
||||||
* Document that invoice→deal must be set at create (`update --opportunity` often HTTP 400)
|
* Document that invoice→deal must be set at create (`update --opportunity` often HTTP 400)
|
||||||
|
|
||||||
|
## [0.15.0](https://github.com/eSlider/go-onlyoffice/compare/v0.14.0...v0.15.0) (2026-08-29)
|
||||||
|
|
||||||
|
### Features
|
||||||
|
|
||||||
|
* **files:** `ListFolder`, `CreateFolder`, `MoveFiles`, `UploadToFolder` — Documents folder helpers for OO Documents ingestion ([6ea2fba](https://github.com/eSlider/go-onlyoffice/commit/6ea2fba))
|
||||||
|
* **files:** dedupe by stem|ext (`files_stem.go`) + `oo projects files dedupe` ([ac06d86](https://github.com/eSlider/go-onlyoffice/commit/ac06d86))
|
||||||
|
* **docs:** `internal/docpipe` — md↔docx convert, OCR→PDF, hOCR→Markdown via go-hocr, as-md/put-md for agents ([6ea2fba](https://github.com/eSlider/go-onlyoffice/commit/6ea2fba), [a264cbd](https://github.com/eSlider/go-onlyoffice/commit/a264cbd))
|
||||||
|
* **docs:** optimize PDF via Ghostscript pdfwrite ([6b3f40e](https://github.com/eSlider/go-onlyoffice/commit/6b3f40e))
|
||||||
|
* **security:** gitleaks secret-scan in CI + pre-push/pre-commit hooks ([9ead554](https://github.com/eSlider/go-onlyoffice/commit/9ead554))
|
||||||
|
|
||||||
|
### Fixes
|
||||||
|
|
||||||
|
* **files:** `DeleteFiles` via per-file DELETE API; `DeleteDavItems` with `Immediately` true ([622dcdb](https://github.com/eSlider/go-onlyoffice/commit/622dcdb), [d9a7adc](https://github.com/eSlider/go-onlyoffice/commit/d9a7adc))
|
||||||
|
* **docs:** put-txt preserves line breaks in DOCX; fixed-width extracts in code block; put-md upsert by stem ([309ae44](https://github.com/eSlider/go-onlyoffice/commit/309ae44), [f1739dc](https://github.com/eSlider/go-onlyoffice/commit/f1739dc), [50bd475](https://github.com/eSlider/go-onlyoffice/commit/50bd475))
|
||||||
|
* **ci:** point gitleaks at `/github/workspace` in docker action ([2c0df0d](https://github.com/eSlider/go-onlyoffice/commit/2c0df0d))
|
||||||
|
|
||||||
## [0.14.0](https://github.com/eSlider/go-onlyoffice/compare/v0.13.0...v0.14.0) (2026-08-27)
|
## [0.14.0](https://github.com/eSlider/go-onlyoffice/compare/v0.13.0...v0.14.0) (2026-08-27)
|
||||||
|
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user