Skip to content

Fix typo in SECURITY.md from 'artefacts' to 'artifacts' #5

Fix typo in SECURITY.md from 'artefacts' to 'artifacts'

Fix typo in SECURITY.md from 'artefacts' to 'artifacts' #5

Workflow file for this run

name: lint
on:
push:
pull_request:
permissions:
contents: read
jobs:
shellcheck:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- name: bash syntax check (bash -n)
run: |
set -e
for f in $(git ls-files '*.sh') extras/bin/luks-fetch-cache; do
bash -n "$f"
echo "syntax OK: $f"
done
- name: shellcheck (warning severity)
run: |
sudo apt-get update -q
sudo apt-get install -y -q shellcheck
shellcheck -S warning \
$(git ls-files '*.sh') \
extras/bin/luks-fetch-cache
loopback:
# Real cryptsetup reencrypt + hard-kill/repair/resume against a throwaway
# file-backed loop device — no real disk is ever touched or modified.
strategy:
fail-fast: false
matrix:
runner: [ubuntu-latest, ubuntu-24.04-arm]
runs-on: ${{ matrix.runner }}
steps:
- uses: actions/checkout@v4
- name: install cryptsetup + btrfs-progs
run: |
sudo apt-get update -q
sudo apt-get install -y -q cryptsetup-bin btrfs-progs
- name: loopback core test
run: sudo bash tests/loopback-core-test.sh
uki-fixtures:
# UKI / systemd-boot / Secure Boot detection against synthetic target
# trees. No disk, no root, no network — pure logic, so it runs everywhere.
strategy:
fail-fast: false
matrix:
runner: [ubuntu-latest, ubuntu-24.04-arm]
runs-on: ${{ matrix.runner }}
steps:
- uses: actions/checkout@v4
- name: install binutils (objcopy, for .cmdline extraction)
run: sudo apt-get update -q && sudo apt-get install -y -q binutils
- name: UKI fixture test
run: bash tests/uki-fixture-test.sh