-
Notifications
You must be signed in to change notification settings - Fork 1
135 lines (112 loc) · 3.97 KB
/
deploy.yml
File metadata and controls
135 lines (112 loc) · 3.97 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
name: Build, Test and Deploy Discord Bot to VPS
on:
workflow_dispatch: # Manual trigger only
# Uncomment below when VPS is ready:
# push:
# branches: [ "main" ]
# paths-ignore:
# - 'docs/**'
# - '.gitignore'
# - 'LICENSE'
env:
REGISTRY: ghcr.io
IMAGE_NAME: ${{ github.repository }}
jobs:
build-test-deploy:
runs-on: ubuntu-latest
permissions:
contents: read
packages: write
steps:
- name: Checkout code
uses: actions/checkout@v4
- name: Set up Node
uses: actions/setup-node@v4
id: setup-node
with:
node-version-file: .nvmrc
- name: Store Node version
run: |
NODE_VERSION="${{ steps.setup-node.outputs.node-version }}"
echo "NODE_VERSION=${NODE_VERSION#v}" >> $GITHUB_ENV
- name: Install pnpm
uses: pnpm/action-setup@v4
with:
version: 10.17.1
- name: Get pnpm store directory
shell: bash
run: |
echo "STORE_PATH=$(pnpm store path --silent)" >> $GITHUB_ENV
- name: Setup pnpm cache
uses: actions/cache@v4
with:
path: ${{ env.STORE_PATH }}
key: ${{ runner.os }}-pnpm-store-${{ hashFiles('**/pnpm-lock.yaml') }}
restore-keys: |
${{ runner.os }}-pnpm-store-
- name: Install dependencies
run: pnpm install --frozen-lockfile
- name: Lint
run: pnpm run lint
- name: Build bot
run: pnpm run build:ci
- name: Run tests
run: pnpm run test:ci
- name: Set up Docker Buildx
uses: docker/setup-buildx-action@v3
- name: Log in to GitHub Container Registry
uses: docker/login-action@v3
with:
registry: ${{ env.REGISTRY }}
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Extract metadata for Docker
id: meta
uses: docker/metadata-action@v5
with:
images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}
tags: |
type=sha,prefix={{branch}}-
type=ref,event=branch
type=raw,value=latest,enable={{is_default_branch}}
- name: Log Step outputs
run: |
echo "Node version: ${{ steps.setup-node.outputs.node-version }}"
echo "NODE_VERSION: ${{ env.NODE_VERSION }}"
echo "Tags: ${{ steps.meta.outputs.tags }}"
echo "Labels: ${{ steps.meta.outputs.labels }}"
- name: Build and push Docker image
uses: docker/build-push-action@v5
with:
context: .
target: production
push: true
tags: ${{ steps.meta.outputs.tags }}
labels: ${{ steps.meta.outputs.labels }}
cache-from: type=gha
cache-to: type=gha,mode=max
build-args: |
NODE_VERSION=${{ env.NODE_VERSION }}
- name: Deploy to VPS
uses: appleboy/ssh-action@v1.0.3
with:
host: ${{ secrets.VPS_HOST }}
username: ${{ secrets.VPS_USER }}
key: ${{ secrets.VPS_SSH_KEY }}
script: |
# Login to GitHub Container Registry
echo "${{ secrets.GITHUB_TOKEN }}" | docker login ghcr.io -u ${{ github.actor }} --password-stdin
# Pull the latest image
docker pull ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}:latest
# Stop and remove old container if it exists
docker stop webdev-bot-prod 2>/dev/null || true
docker rm webdev-bot-prod 2>/dev/null || true
# Run new container
docker run -d \
--name webdev-bot-prod \
--restart unless-stopped \
-e DISCORD_TOKEN="${{ secrets.DISCORD_TOKEN }}" \
-e CLIENT_ID="${{ secrets.CLIENT_ID }}" \
${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}:latest
# Clean up old images
docker image prune -af --filter "until=24h"