name: Pull request diff on: pull_request: branches: - main jobs: diff-expr: name: Diff nix expressions runs-on: ubuntu-latest steps: - uses: actions/checkout@v3 - uses: cachix/install-nix-action@v17 with: extra_nix_config: | access-tokens = github.com=${{ secrets.GITHUB_TOKEN }} trusted-public-keys = cache.nixos.org-1:6NCHdD59X431o0gWypbMrAURkbJ16ZPMQFGspcDShjY= nixcache:8KKuGz95Pk4UJ5W/Ni+pN+v+LDTkMMFV4yrGmAYgkDg= hydra.nixos.org-1:CNHJZBh9K4tP3EKF6FkkgeVYsS3ohTl+oS0Qa8bezVs= chir-rs:AnwyFacopHSkprD6aXY4/R3J9JYzTbV2rosJCBPaB28= experimental-features = nix-command flakes ca-derivations post-build-hook = ${{ github.workspace }}/scripts/post-build-hook substituters = https://cache.nixos.org/ https://attic.chir.rs/chir-rs - name: Download attic run: nix build github:DarkKirb/nix-packages#attic-client - name: Set up secrets run: nix run github:DarkKirb/nix-packages#attic-client -- login attic-server https://attic-nocdn.chir.rs/ "$ATTIC_TOKEN" env: ATTIC_TOKEN: ${{secrets.ATTIC_TOKEN}} - run: | for job in nixos-8gb-fsn1-1.x86_64-linux nutty-noon.x86_64-linux thinkrac.x86_64-linux nas.x86_64-linux instance-20221213-1915.aarch64-linux; do nix show-derivation -r "github:DarkKirb/nixos-config/main#hydraJobs.$job" > old-$job.json done echo "Difference between this PR and main:" > review echo "" >> review for job in nixos-8gb-fsn1-1.x86_64-linux nutty-noon.x86_64-linux thinkrac.x86_64-linux nas.x86_64-linux instance-20221213-1915.aarch64-linux; do nix show-derivation -r ".#hydraJobs.$job" > new-$job.json echo "## Changes for $job:" >> review echo '```' >> review python scripts/diff-drvs.py old-$job.json new-$job.json >> review echo '```' >> review done mv review .github/workflows - uses: harupy/comment-on-pr@master env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} with: filename: review