oliverdavies.uk/.github/workflows/main.yml
Oliver Davies 936d765115 GitHub Actions security hardening
Use commit SHAs for third-party actions to ensure that the same versions
are always being downloaded.
2021-07-16 09:51:20 +01:00

28 lines
579 B
YAML

name: Main
on:
push:
branches:
- main
env:
DOCKER_TAG: ${{ github.sha }}
jobs:
build-and-push-images:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@5a4ac9002d0be2fb38bd78e4b4dbde5606d7042f # v2.3.4
- name: Login to the Docker registry
uses: docker/login-action@f054a8b539a109f9f41c372932f1ae047eff08c9 # v1.10.0
with:
registry: ghcr.io
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- run: make build-images
- run: make push-images
# vim: sw=2 ts=2