Document Labyricorn refresh dispatch
This commit is contained in:
+13
-3
@@ -50,9 +50,19 @@ those directories.
|
|||||||
command example.
|
command example.
|
||||||
- Do not claim that content is public merely because a push succeeded. Report
|
- Do not claim that content is public merely because a push succeeded. Report
|
||||||
push status and synchronization/publication status separately.
|
push status and synchronization/publication status separately.
|
||||||
- When an authenticated refresh mechanism is implemented and documented, use
|
- After an explicitly authorized push that changes `.labyricorn/`, request at
|
||||||
only its approved wrapper command and request at most one refresh for a pushed
|
most one refresh through the site repository's documented Gitea
|
||||||
commit. Until then, do not invent or bypass a trigger mechanism.
|
`workflow_dispatch` endpoint. Use `POST` with `{"ref":"main"}` and an
|
||||||
|
`Authorization: token ...` header supplied from the approved
|
||||||
|
`LABYRICORN_REFRESH_TOKEN` environment or credential store.
|
||||||
|
- The endpoint is
|
||||||
|
`https://git.labyricorn.com/api/v1/repos/Labyricorn/labyricorn-site/actions/workflows/deploy.yml/dispatches`.
|
||||||
|
Never place its credential in the URL, this repository, an `AGENTS.md` file,
|
||||||
|
output, or logs. If the credential is unavailable, do not improvise: the
|
||||||
|
scheduled synchronization runs every 30 minutes.
|
||||||
|
- A successful dispatch only queues synchronization. Verify the Action result
|
||||||
|
and the imported revision on the public project page before reporting that
|
||||||
|
publication completed.
|
||||||
|
|
||||||
## Validation and handoff
|
## Validation and handoff
|
||||||
|
|
||||||
|
|||||||
@@ -34,4 +34,7 @@ Rules:
|
|||||||
|
|
||||||
The Labyricorn synchronization job reads content from an exact repository
|
The Labyricorn synchronization job reads content from an exact repository
|
||||||
commit. Editing these records does not itself deploy the site; scheduled
|
commit. Editing these records does not itself deploy the site; scheduled
|
||||||
synchronization is the publication fallback.
|
synchronization runs every 30 minutes and is the publication fallback. After an
|
||||||
|
authorized push, an assistant with an approved refresh credential may dispatch
|
||||||
|
the Labyricorn site's `deploy.yml` workflow once as documented in
|
||||||
|
`.labyricorn/AGENTS.md`; the credential must never be stored in this repository.
|
||||||
|
|||||||
Reference in New Issue
Block a user