Commit Graph

428 Commits

Author SHA1 Message Date
Marc 'risson' Schmitt 890bb60877 add container
Signed-off-by: Marc 'risson' Schmitt <marc.schmitt@risson.space>
2026-06-17 14:51:01 +02:00
dependabot[bot] ca2cf8164a core: bump goauthentik/fips-python from 5f8db05 to be4a3b1 in /lifecycle/container (#23155)
Signed-off-by: dependabot[bot] <support@github.com>
2026-06-17 13:54:52 +02:00
dependabot[bot] fae37b08c8 core: bump library/golang from 3424c83 to bbf22dd in /lifecycle/container (#23115)
Signed-off-by: dependabot[bot] <support@github.com>
2026-06-16 15:55:23 +02:00
dependabot[bot] e032976eac core: bump goauthentik/fips-python from 28d9ae4 to 5f8db05 in /lifecycle/container (#23116)
Signed-off-by: dependabot[bot] <support@github.com>
2026-06-16 15:55:16 +02:00
dependabot[bot] d690ee591f core: bump library/golang from 0dcba0d to 3424c83 in /lifecycle/container (#23021)
core: bump library/golang in /lifecycle/container

Bumps library/golang from `0dcba0d` to `3424c83`.

---
updated-dependencies:
- dependency-name: library/golang
  dependency-version: 1.26.4-trixie
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-15 14:48:23 +02:00
dependabot[bot] 59ccb20475 core: bump astral-sh/uv from 0.11.20 to 0.11.21 in /lifecycle/container (#23022)
Bumps [astral-sh/uv](https://github.com/astral-sh/uv) from 0.11.20 to 0.11.21.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](https://github.com/astral-sh/uv/compare/0.11.20...0.11.21)

---
updated-dependencies:
- dependency-name: astral-sh/uv
  dependency-version: 0.11.21
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-15 14:47:59 +02:00
dependabot[bot] e1f9e7ee85 core: bump library/node from aa27a5f to 95a34da in /lifecycle/container (#23023)
core: bump library/node in /lifecycle/container

Bumps library/node from `aa27a5f` to `95a34da`.

---
updated-dependencies:
- dependency-name: library/node
  dependency-version: '26'
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-15 14:47:43 +02:00
dependabot[bot] 64e13ba3fc core: bump goauthentik/fips-python from 3.14.5-slim-trixie-fips to 3.14.6-slim-trixie-fips in /lifecycle/container (#23054)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from 3.14.5-slim-trixie-fips to 3.14.6-slim-trixie-fips.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.6-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-15 14:20:51 +02:00
dependabot[bot] 9cc9cac13b lifecycle/aws: bump aws-cdk from 2.1125.0 to 2.1126.0 in /lifecycle/aws (#22990)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1125.0 to 2.1126.0.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1126.0/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1126.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-11 12:54:35 +02:00
dependabot[bot] 4881c3f337 core: bump astral-sh/uv from 0.11.19 to 0.11.20 in /lifecycle/container (#22991)
Bumps [astral-sh/uv](https://github.com/astral-sh/uv) from 0.11.19 to 0.11.20.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](https://github.com/astral-sh/uv/compare/0.11.19...0.11.20)

---
updated-dependencies:
- dependency-name: astral-sh/uv
  dependency-version: 0.11.20
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-11 12:54:30 +02:00
dependabot[bot] 798bc77f42 core: bump goauthentik/fips-python from ede0a00 to 94d8805 in /lifecycle/container (#22992)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from `ede0a00` to `94d8805`.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-11 12:54:27 +02:00
dependabot[bot] cc5ff4b94a core: bump goauthentik/fips-python from dc515b7 to ede0a00 in /lifecycle/container (#22971)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from `dc515b7` to `ede0a00`.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-10 16:57:41 +02:00
dependabot[bot] b55a1b26b7 core: bump goauthentik/fips-python from b332680 to dc515b7 in /lifecycle/container (#22874)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from `b332680` to `dc515b7`.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-09 14:57:16 +02:00
dependabot[bot] 3c861d3f04 core: bump library/golang from 1.26.3-trixie to 1.26.4-trixie in /lifecycle/container (#22837)
core: bump library/golang in /lifecycle/container

Bumps library/golang from 1.26.3-trixie to 1.26.4-trixie.

---
updated-dependencies:
- dependency-name: library/golang
  dependency-version: 1.26.4-trixie
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-04 23:26:55 +02:00
dependabot[bot] ff7424ff78 lifecycle/aws: bump aws-cdk from 2.1124.1 to 2.1125.0 in /lifecycle/aws (#22834)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1124.1 to 2.1125.0.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1125.0/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1125.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-04 15:06:54 +02:00
dependabot[bot] c758e30a1e core: bump library/node from 1e738cb to aa27a5f in /lifecycle/container (#22839)
core: bump library/node in /lifecycle/container

Bumps library/node from `1e738cb` to `aa27a5f`.

---
updated-dependencies:
- dependency-name: library/node
  dependency-version: '26'
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-04 15:06:36 +02:00
dependabot[bot] a0547a02dd core: bump goauthentik/fips-python from 7a06339 to b332680 in /lifecycle/container (#22844)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from `7a06339` to `b332680`.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-04 15:06:20 +02:00
dependabot[bot] 5b7d7a85d5 core: bump astral-sh/uv from 0.11.17 to 0.11.19 in /lifecycle/container (#22854)
Bumps [astral-sh/uv](https://github.com/astral-sh/uv) from 0.11.17 to 0.11.19.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](https://github.com/astral-sh/uv/compare/0.11.17...0.11.19)

---
updated-dependencies:
- dependency-name: astral-sh/uv
  dependency-version: 0.11.19
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-04 15:04:32 +02:00
dependabot[bot] de9d4ab810 core: bump goauthentik/fips-python from 33d1ed9 to 7a06339 in /lifecycle/container (#22676)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from `33d1ed9` to `7a06339`.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-02 19:07:08 +02:00
dependabot[bot] 9d943ad757 lifecycle/aws: bump aws-cdk from 2.1123.0 to 2.1124.1 in /lifecycle/aws (#22709)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1123.0 to 2.1124.1.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1124.1/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1124.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-02 17:15:36 +02:00
dependabot[bot] b24d1b0979 core: bump astral-sh/uv from 0.11.16 to 0.11.17 in /lifecycle/container (#22751)
Bumps [astral-sh/uv](https://github.com/astral-sh/uv) from 0.11.16 to 0.11.17.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](https://github.com/astral-sh/uv/compare/0.11.16...0.11.17)

---
updated-dependencies:
- dependency-name: astral-sh/uv
  dependency-version: 0.11.17
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-02 17:05:14 +02:00
dependabot[bot] bc4963e697 lifecycle/aws: bump aws-cdk from 2.1122.0 to 2.1123.0 in /lifecycle/aws (#22665)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1122.0 to 2.1123.0.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1123.0/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1123.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-26 22:05:53 +02:00
dependabot[bot] e138cbd85f core: bump goauthentik/fips-python from 85dbb3a to 33d1ed9 in /lifecycle/container (#22654)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from `85dbb3a` to `33d1ed9`.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-26 17:07:54 +02:00
dependabot[bot] e4f71e2479 lifecycle/aws: bump aws-cdk from 2.1121.0 to 2.1122.0 in /lifecycle/aws (#22558)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1121.0 to 2.1122.0.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1122.0/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1122.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space>
2026-05-26 11:36:02 +02:00
dependabot[bot] d9fa1dbd89 core: bump astral-sh/uv from 0.11.15 to 0.11.16 in /lifecycle/container (#22564)
Bumps [astral-sh/uv](https://github.com/astral-sh/uv) from 0.11.15 to 0.11.16.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](https://github.com/astral-sh/uv/compare/0.11.15...0.11.16)

---
updated-dependencies:
- dependency-name: astral-sh/uv
  dependency-version: 0.11.16
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space>
2026-05-26 11:35:48 +02:00
dependabot[bot] c450e52e56 core: bump goauthentik/fips-python from 636cb9b to 85dbb3a in /lifecycle/container (#22620)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from `636cb9b` to `85dbb3a`.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-26 11:31:25 +02:00
dependabot[bot] 37541ef857 core: bump library/golang from f34e716 to 0f6b034 in /lifecycle/container (#22621)
core: bump library/golang in /lifecycle/container

Bumps library/golang from `f34e716` to `0f6b034`.

---
updated-dependencies:
- dependency-name: library/golang
  dependency-version: 1.26.3-trixie
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-26 11:18:22 +02:00
dependabot[bot] 85a7355c0f core: bump goauthentik/fips-python from 4fde79d to 636cb9b in /lifecycle/container (#22563)
Signed-off-by: dependabot[bot] <support@github.com>
2026-05-22 13:23:32 +02:00
dependabot[bot] ee319f0951 core: bump library/golang from 1.26.2-trixie to 1.26.3-trixie in /lifecycle/container (#22516)
core: bump library/golang in /lifecycle/container

Bumps library/golang from 1.26.2-trixie to 1.26.3-trixie.

---
updated-dependencies:
- dependency-name: library/golang
  dependency-version: 1.26.3-trixie
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-21 17:27:37 +02:00
dependabot[bot] a04911c688 core: bump library/node from 24 to 26 in /lifecycle/container (#22517)
Signed-off-by: dependabot[bot] <support@github.com>
2026-05-21 12:54:00 +00:00
Teffen Ellis c0d0bffae0 root: bind-mount .npmrc into Dockerfile npm ci stages (#22462)
* root: bind-mount .npmrc into Dockerfile npm ci stages

`npm` walks up from cwd looking for `.npmrc`. The two Dockerfiles that
run `npm ci` (`lifecycle/container/Dockerfile` for the web build and
`website/Dockerfile` for the docs build) bind-mount package.json /
package-lock.json into the build context, but not `.npmrc`. As a result
the project-level settings — most importantly `ignore-scripts=true` —
are not honored inside the container, so a hypothetical malicious
package's preinstall/postinstall hook would execute during the image
build.

Adding `--mount=type=bind,target=/work/.npmrc,src=./.npmrc` to each
`npm ci` step closes that gap. The mount is read-only and only present
for the install step, so it adds no layer weight.

Co-authored-by: Agent <279763771+playpen-agent@users.noreply.github.com>

* Update bindmount.

---------

Co-authored-by: Agent <279763771+playpen-agent@users.noreply.github.com>
2026-05-21 13:39:49 +02:00
dependabot[bot] bb8c44000e core: bump astral-sh/uv from 0.11.5 to 0.11.15 in /lifecycle/container (#22515)
Bumps [astral-sh/uv](https://github.com/astral-sh/uv) from 0.11.5 to 0.11.15.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](https://github.com/astral-sh/uv/compare/0.11.5...0.11.15)

---
updated-dependencies:
- dependency-name: astral-sh/uv
  dependency-version: 0.11.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-21 09:25:24 +00:00
dependabot[bot] 52471a6afe core: bump goauthentik/fips-python from 3.14.3-slim-trixie-fips to 3.14.5-slim-trixie-fips in /lifecycle/container (#22518)
core: bump goauthentik/fips-python in /lifecycle/container

Bumps goauthentik/fips-python from 3.14.3-slim-trixie-fips to 3.14.5-slim-trixie-fips.

---
updated-dependencies:
- dependency-name: goauthentik/fips-python
  dependency-version: 3.14.5-slim-trixie-fips
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-21 10:29:32 +02:00
dependabot[bot] 413f3ab357 core: bump library/node from 4f2b45e to 291be77 in /lifecycle/container (#22494)
Signed-off-by: dependabot[bot] <support@github.com>
2026-05-20 13:13:26 +00:00
dependabot[bot] 9547fee764 lifecycle/aws: bump aws-cdk from 2.1120.0 to 2.1121.0 in /lifecycle/aws (#22350)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1120.0 to 2.1121.0.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1121.0/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1121.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-14 14:00:13 +02:00
Teffen Ellis 9543b3c9f6 ci: Consistent NPM versions via Corepack (#20400)
* core: add .npmrc baseline to block dependency lifecycle scripts

Set ignore-scripts=true at the repo root, plus engine-strict, save-exact,
audit, and prefer-offline. This neutralizes the dominant npm supply-chain
attack vector — postinstall scripts in transitive dependencies — at the
cost of requiring an explicit rebuild for the handful of packages that
legitimately need install scripts (esbuild, chromedriver, tree-sitter,
tree-sitter-json). The next commit wires that rebuild into the Makefile.

Co-Authored-By: Playpen Agent <279763771+playpen-agent@users.noreply.github.com>

* core: route node installs through make to retire website preinstall hook

Make docs-install depend on a new root-node-install so the root deps
are guaranteed before the website install runs, removing the need for
the website/preinstall lifecycle script. Rebuild the small audited list
of trusted packages (esbuild, chromedriver, tree-sitter, tree-sitter-json)
after the web install so ignore-scripts=true remains the only path that
needs maintenance. web/README documents the new workflow.

Co-Authored-By: Playpen Agent <279763771+playpen-agent@users.noreply.github.com>

* Clean up install scripts.

* Track .npmrc in CODEOWNERS

* Fix formatter config. Reformat.

* Fix mounted references.

* Flesh out node scripts.

* Bump engines.

* Prep containers.

* Update makefile.

* Flesh out github actions.

* Clean up docs container.

* lint.

Bump.

Lint.

Bump NPM version.

* Add limits.

* collapse the composite's three setup-node calls to one cache restore

* Add SHA.

* Bump NPM range.

* Run formatter.

* Bump NPM.

* Remove extra install.

* Fix website deps.

* Use local prettier. Fix drift in CI.

* ci: build frontend in CI with node_env production

Signed-off-by: Jens Langhammer <jens@goauthentik.io>

* Install docusaurus config.

* Fix linter warning, order.

* Add linter commands.

* Add timeout.

* Remove pre install check.

---------

Signed-off-by: Jens Langhammer <jens@goauthentik.io>
Co-authored-by: Playpen Agent <279763771+playpen-agent@users.noreply.github.com>
Co-authored-by: Jens Langhammer <jens@goauthentik.io>
2026-05-13 22:05:07 +00:00
Marc 'risson' Schmitt aa5d75c1db core: bump python-kadmin-rs from 0.7.1 to 0.7.2 (#22234)
Signed-off-by: Marc 'risson' Schmitt <marc.schmitt@risson.space>
2026-05-11 17:29:07 +00:00
dependabot[bot] b51d498ea2 core: bump library/node from 735dd68 to 4f2b45e in /lifecycle/container (#22210)
core: bump library/node in /lifecycle/container

Bumps library/node from `735dd68` to `4f2b45e`.

---
updated-dependencies:
- dependency-name: library/node
  dependency-version: '24'
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-11 11:50:39 +00:00
Connor Peshek 7315d126d5 lifecycle/ak: Add manage support (#22176) 2026-05-11 13:06:49 +02:00
authentik-automation[bot] ea61e1cf3b root: bump version to 2026.8.0-rc1 (#22167)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
Co-authored-by: authentik-automation[bot] <135050075+authentik-automation[bot]@users.noreply.github.com>
2026-05-08 17:15:32 +00:00
dependabot[bot] 5a8a7d24d0 lifecycle/aws: bump aws-cdk from 2.1119.0 to 2.1120.0 in /lifecycle/aws (#22105)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1119.0 to 2.1120.0.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1120.0/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1120.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-07 19:18:17 +02:00
Marc 'risson' Schmitt ebd18b466d root: ensure uv sync does not update uv.lock (#22084) 2026-05-06 14:48:59 +00:00
dependabot[bot] b32df17513 core: bump dramatiq from 1.17.1 to 2.1.0 (#22076)
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space>
2026-05-06 14:42:29 +00:00
Marc 'risson' Schmitt ba62507fc2 root: introduce allinone mode (#21990) 2026-05-04 16:43:11 +02:00
Marc 'risson' Schmitt 1258e1eada lifecycle/worker_process: fix healthchecks and metrics not reloading db connections after a failure (#21992) 2026-05-04 15:06:30 +02:00
dependabot[bot] 846f8a7e30 lifecycle/aws: bump aws-cdk from 2.1118.4 to 2.1119.0 in /lifecycle/aws (#22001)
Bumps [aws-cdk](https://github.com/aws/aws-cdk-cli/tree/HEAD/packages/aws-cdk) from 2.1118.4 to 2.1119.0.
- [Release notes](https://github.com/aws/aws-cdk-cli/releases)
- [Commits](https://github.com/aws/aws-cdk-cli/commits/aws-cdk@v2.1119.0/packages/aws-cdk)

---
updated-dependencies:
- dependency-name: aws-cdk
  dependency-version: 2.1119.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-01 12:49:17 +02:00
Marc 'risson' Schmitt aed634734b root: fix rust build with uv-installed Python (#21858) 2026-04-28 18:11:22 +02:00
Marc 'risson' Schmitt 71af5e40a3 lifecycle/container: only mount required packages directories (#21859) 2026-04-27 17:00:05 +02:00
dependabot[bot] 32de314485 core: bump library/golang from 982ae92 to 4a7137e in /lifecycle/container (#21840)
core: bump library/golang in /lifecycle/container

Bumps library/golang from `982ae92` to `4a7137e`.

---
updated-dependencies:
- dependency-name: library/golang
  dependency-version: 1.26.2-trixie
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-27 12:46:38 +01:00
Marc 'risson' Schmitt 97c9626bd4 root: init rust worker (#21324) 2026-04-27 01:08:32 +02:00