From 2fd7fc0e24857dbe5f0e9d8e45cdaac312083480 Mon Sep 17 00:00:00 2001 From: Christopher Willis-Ford <7019101+cwillisf@users.noreply.github.com> Date: Mon, 25 Nov 2024 08:10:48 -0800 Subject: [PATCH] ci: add signature assistant workflow --- .github/workflows/signature-assistant.yml | 31 +++++++++++++++++++++++ 1 file changed, 31 insertions(+) create mode 100644 .github/workflows/signature-assistant.yml diff --git a/.github/workflows/signature-assistant.yml b/.github/workflows/signature-assistant.yml new file mode 100644 index 0000000..acd2c3b --- /dev/null +++ b/.github/workflows/signature-assistant.yml @@ -0,0 +1,31 @@ +name: "Signature Assistant" +on: + issue_comment: + types: [created] + pull_request_target: + types: [opened,closed,synchronize] + +permissions: + actions: write + contents: read + pull-requests: write + statuses: write + +jobs: + CLA-Assistant: + runs-on: ubuntu-latest + steps: + - name: "CLA Assistant" + if: (github.event.comment.body == 'recheck' || github.event.comment.body == 'I have read the CLA Document and I hereby sign the CLA') || github.event_name == 'pull_request_target' + uses: contributor-assistant/github-action@ca4a40a7d1004f18d9960b404b97e5f30a505a08 # v2.6.1 + env: + GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} + # the below token should have repo scope and must be manually added by you in the repository's secrets + PERSONAL_ACCESS_TOKEN: ${{ secrets.GHA_AGREEMENTS_PAT }} + with: + remote-organization-name: 'scratchfoundation' + remote-repository-name: 'scratch-agreements' + path-to-signatures: 'signatures/version1/cla.json' + path-to-document: 'https://github.com/scratchfoundation/scratch-agreements/blob/main/CLA.md' + branch: 'main' + allowlist: semantic-release-bot,*[bot]