Skip to content

Digger Workflow

Digger Workflow #24

Workflow file for this run

---
name: Digger Workflow
on:
pull_request:
branches: ['main']
types: [closed, opened, synchronize, reopened]
issue_comment:
types: [created]
if: contains(github.event.comment.body, 'digger')
workflow_dispatch:
inputs:
id:
description: 'run identifier'
required: false
job:
required: true
comment_id:
required: true
# jobs:
# caller-identity:
# name: Check caller identity
# permissions:
# contents: read
# id-token: write
# runs-on: ubuntu-latest
# steps:
# - name: Configure AWS credentials
# uses: aws-actions/configure-aws-credentials@v2
# with:
# aws-region: eu-west-1
# role-to-assume: arn:aws:iam::851725175069:role/github
# - run: aws sts get-caller-identity
jobs:
build:
runs-on: ubuntu-latest
permissions:
contents: write # required to merge PRs
actions: write # required for plan persistence
id-token: write # required for workload-identity-federation
pull-requests: write # required to post PR comments
statuses: write # required to validate combined PR status
steps:
- uses: actions/checkout@v4
- name: digger run
uses: diggerhq/digger@latest
with:
setup-aws: true
aws-role-to-assume: arn:aws:iam::851725175069:role/digger-terraform
aws-region: eu-west-1
disable-locking: true
digger-hostname: 'https://cloud.digger.dev'
digger-organisation: 'digger'
digger-token: ${{ secrets.DIGGER_TOKEN }}
env:
GITHUB_CONTEXT: ${{ toJson(github) }}
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}