aboutsummaryrefslogtreecommitdiff
path: root/ci
AgeCommit message (Collapse)AuthorFilesLines
14 daysbuild: pin and verify release inputsLena5-88/+612
Support Alpine/musl and Debian/glibc hosts, lock downloaded and Gradle artifacts, and verify native and APK security properties.
2026-07-01ci: drop the Codeberg release scriptLena1-103/+0
Migrating the project off Codeberg to GitLab. The release publisher was written against the Forgejo API and hardcodes codeberg.org; remove it rather than port it for now.
2026-07-13ci: pin toolchains and verify release artifactsLena5-59/+140
Checksum-pin every downloaded toolchain archive. Before publishing, verify the APK was built from HEAD, the tag matches versionName, apksigner passes, and the tree is clean; publish a sha256 sidecar and treat published assets as immutable. Compare full unsigned APKs in verify-repro and run the Android unit tests in CI.
2026-07-01ci: remove unused testsshdLena3-162/+0
Nothing referenced it: the rsh tests run their own in-process SSH server (sshserver_test.go), which testsshd largely duplicated.
2026-07-01ci: make release.sh idempotentLena1-9/+24
Re-running on the same tag died creating a release that already existed. Reuse the tag's release when present, replace a stale asset before uploading, and parse API responses with python3 instead of sed.
2026-07-01ci: fail when gradle pins drift from versionsLena1-0/+14
The gradle files and go.mod repeat pins from versions because gradle cannot source a shell file. Compare them in ci/test.sh so a bump that misses a copy fails loud instead of silently building with the old version.
2026-07-01ci: pin the exact JDK releaseLena1-3/+4
The Adoptium "latest 17 GA" endpoint floats while versions promises never to float. Pin the full Temurin build and fetch it by version.
2026-01-01rsend: push phone folders to a home SSH host over rsyncLena8-0/+335
A small Android app for one-way folder backup, a KISS alternative to Syncthing. It bundles rsync (built from pinned source via the NDK) and a pure-Go SSH transport, both shipped in the APK as lib*.so and run from the native library directory. rsend pins the host key, stores the ed25519 identity Keystore-encrypted, pushes each folder additively or as a mirror, and runs on demand or on a WiFi-only schedule. The build is self-contained and reproducible: make setup provisions the toolchain, make builds rsync, rsh, and the APK.