#!/bin/sh # Host-verifiable checks: pinned source checksum, Go formatting, vet, and tests # (including the real-rsync-through-rsh end-to-end). Needs Go and rsync; no # Android toolchain. This is what runs on every push. set -eu root=$(CDPATH= cd -- "$(dirname -- "$0")/.." && pwd) . "$root/versions" if [ -f "$root/rsync/rsync-${RSYNC_VERSION}.tar.gz" ]; then echo "ci: verifying pinned rsync checksum" ( cd "$root/rsync" && sha256sum -c "rsync-${RSYNC_VERSION}.tar.gz.sha256" ) fi # The gradle files and go.mod repeat pins from ./versions (gradle cannot source # a shell file); fail loud if they drift. echo "ci: version pins" pin() { grep -q "$2" "$root/$1" || { echo "ci: $1 does not pin '$2' (see versions)" >&2; exit 1; } } pin build.gradle "version '${AGP_VERSION}'" pin build.gradle "version '${KOTLIN_VERSION}'" pin gradle/wrapper/gradle-wrapper.properties "gradle-${GRADLE_VERSION}-bin.zip" pin app/build.gradle "compileSdk ${ANDROID_PLATFORM}" pin app/build.gradle "minSdk ${ANDROID_MIN_SDK}" pin app/build.gradle "targetSdk ${ANDROID_TARGET_SDK}" pin rsh/go.mod "^go ${GO_VERSION}" echo "ci: gofmt" unformatted=$(gofmt -l "$root/rsh") if [ -n "$unformatted" ]; then echo "ci: gofmt needed for:" >&2 echo "$unformatted" >&2 exit 1 fi echo "ci: go vet" ( cd "$root/rsh" && go vet ./... ) echo "ci: go test" ( cd "$root/rsh" && go test ./... ) echo "ci: ok"