From 4e52dfc1558151cfd45397d1139bdf487e1884bc Mon Sep 17 00:00:00 2001 From: Michael Kriese Date: Fri, 9 Oct 2026 11:47:46 +0200 Subject: [PATCH 1/2] ci: replace actionlint with jactionlint Co-Authored-By: Claude Opus 5.5 --- .github/workflows/build.yml | 4 ++-- AGENTS.md | 1 + mise.toml | 1 + 3 files changed, 4 insertions(+), 2 deletions(-) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 6214a354d2..c282593bbc 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -126,12 +126,12 @@ jobs: with: persist-credentials: false show-progress: false - # include the local composite actions, so that actionlint validates + # include the local composite actions, so that jactionlint validates # their metadata, and zizmor audits them sparse-checkout: .github/ - name: Check workflow files - uses: docker://rhysd/actionlint:1.7.12@sha256:b1934ee5f1c509618f2508e6eb47ee0d3520686341fec936f3b79331f9315667 + uses: docker://ghcr.io/jdx/jactionlint:1.8.2@sha256:5515b269082f92ee0962ccc236df3300113aedcd4008a2aad5ad0903680b7c67 with: args: -color -ignore "invalid activity type \"destroyed\" for \"merge_group\" Webhook event. available types are \"checks_requested\"" diff --git a/AGENTS.md b/AGENTS.md index 680fb3a135..9681737cc1 100644 --- a/AGENTS.md +++ b/AGENTS.md @@ -37,6 +37,7 @@ All tooling runs through `pnpm`: - `pnpm oxlint` and `pnpm oxlint-fix`: lint and fix lint findings - `pnpm prettier` and `pnpm prettier-fix`: check and fix formatting - `pnpm lint:markdown`: lint markdown +- `mise exec -- jactionlint`: lint the GitHub workflows and local actions - `pnpm lint:schema`: check the committed json schemas are up to date - `pnpm schema`: regenerate the committed json schemas - `pnpm test:docker -b -t test-x86_64 node`: run the container test in `test/node` diff --git a/mise.toml b/mise.toml index 7e0c954eb7..79ff2481f8 100644 --- a/mise.toml +++ b/mise.toml @@ -1,3 +1,4 @@ [tools] +jactionlint = "1.8.2" node = "24.21.0" pnpm = "12.10.0" From 9d2606290ca6910cef027aa72abe6d88a2c2ded5 Mon Sep 17 00:00:00 2001 From: Michael Kriese Date: Fri, 9 Oct 2026 11:49:11 +0200 Subject: [PATCH 2/2] docs: run jactionlint directly after mise install Co-Authored-By: Claude Opus 5.5 --- AGENTS.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/AGENTS.md b/AGENTS.md index 9681737cc1..581c3ea73c 100644 --- a/AGENTS.md +++ b/AGENTS.md @@ -37,7 +37,6 @@ All tooling runs through `pnpm`: - `pnpm oxlint` and `pnpm oxlint-fix`: lint and fix lint findings - `pnpm prettier` and `pnpm prettier-fix`: check and fix formatting - `pnpm lint:markdown`: lint markdown -- `mise exec -- jactionlint`: lint the GitHub workflows and local actions - `pnpm lint:schema`: check the committed json schemas are up to date - `pnpm schema`: regenerate the committed json schemas - `pnpm test:docker -b -t test-x86_64 node`: run the container test in `test/node` @@ -45,6 +44,8 @@ All tooling runs through `pnpm`: The container tests build the whole image, so they take several minutes. +`jactionlint` lints the GitHub workflows and local actions, install it with `mise install`. + ## Tool installers When adding or changing a tool installer, follow the [tool installer best practices](./docs/tool-installer-best-practices.md).