test(release): inject read failures at the bounded descriptor boundary #3
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: Linux release candidate validation | |
| on: | |
| push: | |
| branches: [candidate/extensions-release-20260923] | |
| paths: | |
| - '.github/workflows/release-linux-candidate.yml' | |
| - 'docs/validation/release-package-proof.cjs' | |
| - 'docs/validation/release-companion-proof.cjs' | |
| - 'docs/validation/release-command.py' | |
| - 'docs/validation/release-linux-shards.py' | |
| permissions: | |
| contents: read | |
| actions: read | |
| jobs: | |
| linux: | |
| if: github.repository == 'colbymchenry/codegraph' | |
| runs-on: ubuntu-24.04 | |
| timeout-minutes: 40 | |
| env: | |
| CODEGRAPH_TELEMETRY: '0' | |
| npm_config_cache: ${{ github.workspace }}/.qa/npm-cache | |
| steps: | |
| - uses: actions/checkout@v4 | |
| with: | |
| persist-credentials: false | |
| - uses: actions/setup-node@v4 | |
| with: | |
| node-version: '22.23.2' | |
| - run: npm ci --no-audit --no-fund | |
| - name: Reuse the exact previously tested archive | |
| uses: actions/download-artifact@v4 | |
| with: | |
| github-token: ${{ github.token }} | |
| run-id: 35916831423 | |
| name: release-linux-36726ada75ffbbde3f992a83f6c306eaa1831837-1 | |
| path: .qa/reused-linux | |
| - name: Build current test source and stage unchanged archive | |
| run: | | |
| mkdir -p release | |
| cp .qa/reused-linux/release/codegraph-linux-x64.tar.gz release/ | |
| python3 docs/validation/release-command.py release-linux-current-build npm run build | |
| - name: Complete actual packed companion and verify all archive bytes | |
| run: python3 docs/validation/release-command.py release-linux-companion node docs/validation/release-companion-proof.cjs | |
| - name: Full Linux regression with exactly-once coverage | |
| if: success() || failure() | |
| run: python3 docs/validation/release-linux-shards.py "$GITHUB_SHA" | |
| - name: Retain exact candidate evidence and artifacts | |
| if: always() | |
| uses: actions/upload-artifact@v4 | |
| with: | |
| name: release-linux-${{ github.sha }}-${{ github.run_attempt }} | |
| include-hidden-files: true | |
| retention-days: 7 | |
| path: | | |
| .qa/recovery/ | |
| .qa/release-companion/ | |
| .qa/release-full/ | |
| .qa/release-semantic-recovery/ | |
| .qa/release-managed-recovery/ | |
| .qa/release-managed-custom/ | |
| release/codegraph-linux-x64.tar.gz |