diff --git a/.github/workflows/ripple.yml b/.github/workflows/ripple.yml index 17f0f4f..376c49c 100644 --- a/.github/workflows/ripple.yml +++ b/.github/workflows/ripple.yml @@ -2,8 +2,7 @@ name: Ripple Enterprise Gate on: pull_request: - push: - branches: [main, master] + types: [opened, synchronize, reopened] permissions: contents: read @@ -11,20 +10,25 @@ permissions: checks: write jobs: - ripple: + ripple-gate: name: Ripple authorization gate runs-on: ubuntu-latest steps: - - name: Checkout + - name: Checkout PR Code uses: actions/checkout@v4 with: fetch-depth: 0 - - name: Setup Node + + - name: Setup Node.js uses: actions/setup-node@v4 with: node-version: 20 - - name: Ripple CI gate - run: npx -y @getripple/cli@1.0.13 ci --base origin/\${{ github.base_ref || 'main' }} --github-annotations --sha \${{ github.event.pull_request.head.sha || github.sha }} + + - name: Run Ripple CI Gate using latest public package env: RIPPLE_API_KEY: ${{ secrets.RIPPLE_API_KEY }} RIPPLE_CLOUD_URL: ${{ secrets.RIPPLE_CLOUD_URL }} + run: | + # Use npx to securely fetch and run the LATEST version from the public npm registry. + # This guarantees we are using your most recently published, fixed code. + npx -y @getripple/cli@latest ci --base origin/${{ github.base_ref || 'main' }} --github-annotations --sha ${{ github.event.pull_request.head.sha || github.sha }} diff --git a/src/utils.ts b/src/utils.ts index 3a350b2..0a8f32f 100644 --- a/src/utils.ts +++ b/src/utils.ts @@ -2,9 +2,11 @@ export function funcA(input: string): string { // This is the function we plan to change. return `Processed A: ${input}`; + //safe } export function funcB(input: string): string { // This function should NOT be changed. return `Processed B: ${input}`; + //rouge } \ No newline at end of file