|
| 1 | +name: Release VSIX - Build and Package VS Code Extension |
| 2 | + |
| 3 | +on: |
| 4 | + workflow_call: |
| 5 | + inputs: |
| 6 | + version: |
| 7 | + description: 'Release version tag (e.g., vX.Y.Z). Must start with "v".' |
| 8 | + required: true |
| 9 | + type: string |
| 10 | + outputs: |
| 11 | + release_name: |
| 12 | + description: 'The release name without "v" prefix (e.g., X.Y.Z)' |
| 13 | + value: ${{ jobs.publish-vsix.outputs.release_name }} |
| 14 | + version: |
| 15 | + description: 'The full version string with "v" prefix (e.g., vX.Y.Z)' |
| 16 | + value: ${{ jobs.publish-vsix.outputs.version }} |
| 17 | + vsix_name: |
| 18 | + description: 'The VSIX filename (e.g., codeql-development-mcp-server.vsix)' |
| 19 | + value: ${{ jobs.publish-vsix.outputs.vsix_name }} |
| 20 | + |
| 21 | +# Note: This workflow is called exclusively via workflow_call from release.yml. |
| 22 | +# It does NOT have a workflow_dispatch trigger to keep release.yml as the single |
| 23 | +# entry point for all release operations. To re-build the VSIX standalone, |
| 24 | +# use workflow_dispatch on release.yml with publish_npm=false and |
| 25 | +# publish_codeql_packs=false. |
| 26 | + |
| 27 | +permissions: |
| 28 | + contents: read |
| 29 | + |
| 30 | +jobs: |
| 31 | + publish-vsix: |
| 32 | + name: Build and Package VSIX Extension |
| 33 | + runs-on: ubuntu-latest |
| 34 | + |
| 35 | + environment: release-vsix |
| 36 | + |
| 37 | + permissions: |
| 38 | + contents: read |
| 39 | + |
| 40 | + outputs: |
| 41 | + release_name: ${{ steps.version.outputs.release_name }} |
| 42 | + version: ${{ steps.version.outputs.version }} |
| 43 | + vsix_name: ${{ steps.package.outputs.vsix_name }} |
| 44 | + |
| 45 | + steps: |
| 46 | + - name: VSIX - Validate and parse version |
| 47 | + id: version |
| 48 | + run: | |
| 49 | + VERSION="${{ inputs.version }}" |
| 50 | + if [[ ! "${VERSION}" =~ ^v ]]; then |
| 51 | + echo "::error::Version '${VERSION}' must start with 'v'" |
| 52 | + exit 1 |
| 53 | + fi |
| 54 | + echo "version=${VERSION}" >> $GITHUB_OUTPUT |
| 55 | + echo "release_name=${VERSION#v}" >> $GITHUB_OUTPUT |
| 56 | +
|
| 57 | + - name: VSIX - Checkout tag |
| 58 | + uses: actions/checkout@v6 |
| 59 | + with: |
| 60 | + ref: refs/tags/${{ steps.version.outputs.version }} |
| 61 | + |
| 62 | + - name: VSIX - Setup Node.js |
| 63 | + uses: actions/setup-node@v6 |
| 64 | + with: |
| 65 | + cache: 'npm' |
| 66 | + node-version-file: '.node-version' |
| 67 | + |
| 68 | + - name: VSIX - Install dependencies |
| 69 | + run: npm ci --include=optional |
| 70 | + |
| 71 | + - name: VSIX - Validate version consistency |
| 72 | + run: | |
| 73 | + RELEASE_NAME="${{ steps.version.outputs.release_name }}" |
| 74 | + EXTENSION_VERSION=$(node -e "console.log(require('./extensions/vscode/package.json').version)") |
| 75 | + if [ "${EXTENSION_VERSION}" != "${RELEASE_NAME}" ]; then |
| 76 | + echo "::error::Extension version (${EXTENSION_VERSION}) does not match release (${RELEASE_NAME})" |
| 77 | + exit 1 |
| 78 | + fi |
| 79 | + echo "✅ Extension version matches release: ${RELEASE_NAME}" |
| 80 | +
|
| 81 | + - name: VSIX - Build server |
| 82 | + run: npm run build -w server |
| 83 | + |
| 84 | + - name: VSIX - Package VSIX |
| 85 | + id: package |
| 86 | + working-directory: extensions/vscode |
| 87 | + run: | |
| 88 | + VSIX_NAME="codeql-development-mcp-server.vsix" |
| 89 | + npx @vscode/vsce package --no-dependencies --out "${VSIX_NAME}" |
| 90 | + echo "vsix_name=${VSIX_NAME}" >> $GITHUB_OUTPUT |
| 91 | + echo "✅ Packaged ${VSIX_NAME}" |
| 92 | +
|
| 93 | + - name: VSIX - Verify VSIX contents |
| 94 | + working-directory: extensions/vscode |
| 95 | + run: | |
| 96 | + echo "Verifying bundled server and tool query packs..." |
| 97 | + npx @vscode/vsce ls --no-dependencies 2>&1 | tee /tmp/vsix-contents.txt |
| 98 | +
|
| 99 | + # Verify critical files are included |
| 100 | + for required in \ |
| 101 | + "dist/extension.cjs" \ |
| 102 | + "server/dist/codeql-development-mcp-server.js" \ |
| 103 | + "server/package.json" \ |
| 104 | + "server/ql/javascript/tools/src/PrintAST/PrintAST.ql"; do |
| 105 | + if grep -q "${required}" /tmp/vsix-contents.txt; then |
| 106 | + echo " ✅ ${required}" |
| 107 | + else |
| 108 | + echo " ❌ Missing: ${required}" |
| 109 | + exit 1 |
| 110 | + fi |
| 111 | + done |
| 112 | +
|
| 113 | + - name: VSIX - Upload artifact |
| 114 | + uses: actions/upload-artifact@v6 |
| 115 | + with: |
| 116 | + name: codeql-development-mcp-server-vsix-${{ steps.version.outputs.version }} |
| 117 | + path: extensions/vscode/${{ steps.package.outputs.vsix_name }} |
| 118 | + |
| 119 | + - name: VSIX - Summary |
| 120 | + run: | |
| 121 | + VERSION="${{ steps.version.outputs.version }}" |
| 122 | + VSIX_NAME="${{ steps.package.outputs.vsix_name }}" |
| 123 | + VSIX_SIZE=$(du -h "extensions/vscode/${VSIX_NAME}" | cut -f1) |
| 124 | + echo "## VSIX Build Summary" >> $GITHUB_STEP_SUMMARY |
| 125 | + echo "" >> $GITHUB_STEP_SUMMARY |
| 126 | + echo "| Property | Value |" >> $GITHUB_STEP_SUMMARY |
| 127 | + echo "| -------- | ----- |" >> $GITHUB_STEP_SUMMARY |
| 128 | + echo "| Version | ${VERSION} |" >> $GITHUB_STEP_SUMMARY |
| 129 | + echo "| VSIX | \`${VSIX_NAME}\` |" >> $GITHUB_STEP_SUMMARY |
| 130 | + echo "| Size | ${VSIX_SIZE} |" >> $GITHUB_STEP_SUMMARY |
| 131 | + echo "" >> $GITHUB_STEP_SUMMARY |
| 132 | + echo "### Bundled Contents" >> $GITHUB_STEP_SUMMARY |
| 133 | + echo "- \`dist/extension.cjs\` — Extension entry point" >> $GITHUB_STEP_SUMMARY |
| 134 | + echo "- \`server/dist/\` — Bundled MCP server" >> $GITHUB_STEP_SUMMARY |
| 135 | + echo "- \`server/ql/*/tools/src/\` — CodeQL tool query packs" >> $GITHUB_STEP_SUMMARY |
| 136 | + echo "- \`server/package.json\` — Server package metadata" >> $GITHUB_STEP_SUMMARY |
0 commit comments