Bump actions/checkout off the deprecated v4 in @danielridgebot's workflows
Nessuno ha ancora preso questa issue.
Valutazione
- Difficoltà
- 2/5
- Tempo stimato
- 1-3 ore
- Idoneità per principianti
- 88/100
Direzione di ricerca
In hackforla/check-ghpages-versions, esamina .github/workflows/check-gh-pages-version.yml, check-ruby-version.yml, keepalive.yml e test-issue-labels.yml. Trova ogni voce uses: actions/checkout e aggiorna solo le quattro versioni richieste, quindi esegui keepalive.yml tramite workflow_dispatch. Il lavoro è completato quando checkout riesce senza un’annotazione Node 20; dopo il merge deve essere conferuita un’esecuzione pianificata del controllo delle versioni.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Descrizione
Overview
We need to bump actions/checkout from v4 to v5 in all four of @danielridgebot's workflows, because v4 targets Node.js 20 and GitHub is force-running it on Node 24 on every run — when that fallback is withdrawn the workflows break, and this bot's failure mode is silence rather than an alert.
Action Items
The bot's code lives in hackforla/check-ghpages-versions — the org repo, not a personal account (the danielridgebot/check-ghpages-versions URL still resolves, but only as a redirect). The fix is one line per file, delivered as a PR on that repo.
- Bump
actions/checkout@v4toactions/checkout@v5in all four workflows:check-gh-pages-version.yml:13,check-ruby-version.yml:13,keepalive.yml:16,test-issue-labels.yml:11. Line numbers were accurate 2026-08-24 and may drift — find them by theuses: actions/checkoutline. - Leave
actions/github-script@v8alone (line 44 of both check workflows). It already runs on Node 24 and produces no annotation. - Do not go past v5 in this pass, even though v7 is current. v5 is the pure Node 24 bump with no behaviour change. v6 moved the persisted git credential into a separate file, and three of these four workflows depend on that credential to
git pusha commit back to the repo. v7 additionally blocks fork checkouts forpull_request_target/workflow_run. Both are probably fine here, but neither is a one-line change any more — going current is a separate ticket that needs a real push test. - Run
keepalive.ymlon the branch viaworkflow_dispatchand confirm the checkout step succeeds with no Node 20 annotation. It is safe to run at any time: it prints the repo's idle age and exits 0 without committing unless the repo has been idle 50 or more days. - After the PR merges, confirm a scheduled run of
check-gh-pages-version.ymlorcheck-ruby-version.ymlcompletes with no "Node.js 20 is deprecated" annotation. Both run daily (12:00 and 12:15 UTC), so this is a next-day check — it cannot be observed from the branch, because the annotation only appears on the runs that actually do the version check.
Resources/Instructions
- Bot repo: https://github.com/hackforla/check-ghpages-versions — workflows are in
.github/workflows/. - Example of the annotation: https://github.com/hackforla/check-ghpages-versions/actions/runs/32782593141 (
check-ruby-version, 2026-08-24) — "Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4". - Release notes, for the version reasoning above: v5.0.0 (Node 24; requires runner v2.327.1+, which GitHub-hosted runners are well past), v6.0.0, v7.0.0.
- A full end-to-end test exists but has side effects and is not needed for this change: setting
release-versions/github-pages-gem.txtto an older value and dispatchingcheck-gh-pages-version.ymlexercises thegit pushpath, but it also opens a real issue on hackforla/devops with a board card, which then has to be closed and the card deleted. - Related: #180 (re-enabled the bot's disabled workflow and added the keepalive).
- Lingua principale
- PowerShell
- Stelle
- 8
- Fork
- 10
- Merge medio
- 7h 30m
- PR unite (30g)
- 22
Guida per i contributori
Apri la guida per i contributori
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Altre issue di hackforla/devops
-
Fix CONTRIBUTING.md's "Getting write access" section - it contradicts the fork bot and the wiki Apertacomplexity: small feature: Onboarding good first issue role: DevOps Engineer size: 1pt
Difficoltà 2/5 1-3 ore Idoneità per principianti 84/100
-
complexity: small feature: maintenance role: DevOps Engineer size: 1pt
Difficoltà 3/5 1-2 giorni Idoneità per principianti 58/100
-
complexity: medium feature: security role: DevOps Engineer size: 3pt
Difficoltà 4/5 3-5 giorni Idoneità per principianti 48/100
-
Migrate the Terraform S3 backends off dynamodb_table onto use_lockfile and delete the lock tables Apertacomplexity: medium feature: maintenance role: DevOps Engineer size: 2pt
Difficoltà 5/5 Più di una settimana Idoneità per principianti 45/100
-
complexity: large epic feature: project terraform setup role: DevOps Engineer size: 13+pt
Difficoltà 5/5 Più di una settimana Idoneità per principianti 30/100
Tutte le issue di hackforla/devops
Issue simili
-
Solved site promotion gate fails on runner PHP patch drift (expects 8.2.33, runner installs 8.2.34) Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 75/100
Automattic/blocks-engine#2161 ·
-
Difficoltà 1/5 Meno di un'ora Idoneità per principianti 60/100
github/gh-aw-mcpg#13748 ·
-
agentic-workflows
Difficoltà 2/5 1-3 ore Idoneità per principianti 65/100
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 70/100
personalrobotics/tsr#128 ·
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 70/100
Azure/azure-functions-docker#1257 ·