-
-
Notifications
You must be signed in to change notification settings - Fork 1
62 lines (53 loc) · 1.64 KB
/
label-sync.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
---
# yaml-language-server: $schema=https://json.schemastore.org/github-workflow.json
name: "Label Sync"
on:
workflow_dispatch:
push:
branches: ["main"]
paths:
- .github/labels.yaml
- .github/workflows/label-sync.yaml
- apps/**
schedule:
- cron: "0 0 * * *" # Every day at midnight
jobs:
label-sync:
name: Label Sync
runs-on: ubuntu-latest
steps:
- name: Configure 1password
uses: 1password/load-secrets-action/configure@v2
with:
service-account-token: ${{ secrets.ONEPASS_SA_TOKEN }}
- name: Get Secrets
uses: 1password/load-secrets-action@v2
with:
export-env: true
env:
BOT_APP_ID: op://Kubernetes/github-bot/BOT_APP_ID
BOT_APP_PRIVATE_KEY: op://Kubernetes/github-bot/BOT_APP_PRIVATE_KEY
- name: Generate Token
uses: actions/create-github-app-token@v1
id: app-token
with:
app-id: ${{ env.BOT_APP_ID }}
private-key: ${{ env.BOT_APP_PRIVATE_KEY }}
- name: Checkout
uses: actions/checkout@v4
with:
token: ${{ steps.app-token.outputs.token }}
- name: Setup Homebrew
uses: Homebrew/actions/setup-homebrew@master
- name: Setup Workflow Tools
shell: bash
run: brew install go-task
- name: Append app labels to the labels config file
shell: bash
run: task append-app-labels --force
- name: Sync Labels
uses: EndBug/label-sync@v2
with:
token: ${{ steps.app-token.outputs.token }}
config-file: .github/labels.yaml
delete-other-labels: true