Skip to content

ci(e2e): make the reusable pipeline usable from a commander consumer #144

ci(e2e): make the reusable pipeline usable from a commander consumer

ci(e2e): make the reusable pipeline usable from a commander consumer #144

Workflow file for this run

# Copyright 2026 Flant JSC
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
name: Gitleaks
# Gitleaks runs only on pull requests. The upstream action's diff mode checks
# out refs/pull/<N>/merge and scans just the PR range; it relies on
# github.event.number, which exists only for pull_request events. (A push-event
# run produces an empty refspec — `+refs/pull//merge:...` — and `git fetch`
# fails, so we deliberately do not trigger on push.)
on:
pull_request:
types: [opened, synchronize, reopened]
permissions:
contents: read
pull-requests: read
# Cancel superseded runs on the same PR ref so rapid-fire pushes don't pile up.
concurrency:
group: gitleaks-${{ github.workflow }}-${{ github.ref }}
cancel-in-progress: true
jobs:
gitleaks_scan:
name: Gitleaks scan
runs-on: ubuntu-latest
permissions:
contents: read
pull-requests: read
steps:
- name: Run Gitleaks diff scan
uses: deckhouse/modules-actions/gitleaks@v6
with:
scan_mode: "diff"