diff --git a/.dockerignore b/.dockerignore new file mode 100644 index 0000000..8f07ffd --- /dev/null +++ b/.dockerignore @@ -0,0 +1,232 @@ +# Python-generated files +__pycache__/ +*.py[oc] +build/ +dist/ +wheels/ +*.egg-info + +# Virtual environments +.venv +# Byte-compiled / optimized / DLL files +__pycache__/ +*.py[codz] +*$py.class + +# C extensions +*.so + +# Distribution / packaging +.Python +build/ +develop-eggs/ +dist/ +downloads/ +eggs/ +.eggs/ +lib/ +lib64/ +parts/ +sdist/ +var/ +wheels/ +share/python-wheels/ +*.egg-info/ +.installed.cfg +*.egg +MANIFEST + +# PyInstaller +# Usually these files are written by a python script from a template +# before PyInstaller builds the exe, so as to inject date/other infos into it. +*.manifest +*.spec + +# Installer logs +pip-log.txt +pip-delete-this-directory.txt + +# Unit test / coverage reports +htmlcov/ +.tox/ +.nox/ +.coverage +.coverage.* +.cache +nosetests.xml +coverage.xml +*.cover +*.py.cover +.hypothesis/ +.pytest_cache/ +cover/ + +# Translations +*.mo +*.pot + +# Django stuff: +*.log +local_settings.py +db.sqlite3 +db.sqlite3-journal + +# Flask stuff: +instance/ +.webassets-cache + +# Scrapy stuff: +.scrapy + +# Sphinx documentation +docs/_build/ + +# PyBuilder +.pybuilder/ +target/ + +# Jupyter Notebook +.ipynb_checkpoints + +# IPython +profile_default/ +ipython_config.py + +# pyenv +# For a library or package, you might want to ignore these files since the code is +# intended to run in multiple environments; otherwise, check them in: +# .python-version + +# pipenv +# According to pypa/pipenv#598, it is recommended to include Pipfile.lock in version control. +# However, in case of collaboration, if having platform-specific dependencies or dependencies +# having no cross-platform support, pipenv may install dependencies that don't work, or not +# install all needed dependencies. +#Pipfile.lock + +# UV +# Similar to Pipfile.lock, it is generally recommended to include uv.lock in version control. +# This is especially recommended for binary packages to ensure reproducibility, and is more +# commonly ignored for libraries. +#uv.lock + +# poetry +# Similar to Pipfile.lock, it is generally recommended to include poetry.lock in version control. +# This is especially recommended for binary packages to ensure reproducibility, and is more +# commonly ignored for libraries. +# https://python-poetry.org/docs/basic-usage/#commit-your-poetrylock-file-to-version-control +#poetry.lock +#poetry.toml + +# pdm +# Similar to Pipfile.lock, it is generally recommended to include pdm.lock in version control. +# pdm recommends including project-wide configuration in pdm.toml, but excluding .pdm-python. +# https://pdm-project.org/en/latest/usage/project/#working-with-version-control +#pdm.lock +#pdm.toml +.pdm-python +.pdm-build/ + +# pixi +# Similar to Pipfile.lock, it is generally recommended to include pixi.lock in version control. +#pixi.lock +# Pixi creates a virtual environment in the .pixi directory, just like venv module creates one +# in the .venv directory. It is recommended not to include this directory in version control. +.pixi + +# PEP 582; used by e.g. github.com/David-OConnor/pyflow and github.com/pdm-project/pdm +__pypackages__/ + +# Celery stuff +celerybeat-schedule +celerybeat.pid + +# SageMath parsed files +*.sage.py + +# Environments +.env +.envrc +.venv +env/ +venv/ +ENV/ +env.bak/ +venv.bak/ + +# Spyder project settings +.spyderproject +.spyproject + +# Rope project settings +.ropeproject + +# mkdocs documentation +/site + +# mypy +.mypy_cache/ +.dmypy.json +dmypy.json + +# Pyre type checker +.pyre/ + +# pytype static type analyzer +.pytype/ + +# Cython debug symbols +cython_debug/ + +# PyCharm +# JetBrains specific template is maintained in a separate JetBrains.gitignore that can +# be found at https://github.com/github/gitignore/blob/main/Global/JetBrains.gitignore +# and can be added to the global gitignore or merged into this file. For a more nuclear +# option (not recommended) you can uncomment the following to ignore the entire idea folder. +#.idea/ + +# Abstra +# Abstra is an AI-powered process automation framework. +# Ignore directories containing user credentials, local state, and settings. +# Learn more at https://abstra.io/docs +.abstra/ + +# Visual Studio Code +# Visual Studio Code specific template is maintained in a separate VisualStudioCode.gitignore +# that can be found at https://github.com/github/gitignore/blob/main/Global/VisualStudioCode.gitignore +# and can be added to the global gitignore or merged into this file. However, if you prefer, +# you could uncomment the following to ignore the entire vscode folder +# .vscode/ + +# Ruff stuff: +.ruff_cache/ + +# PyPI configuration file +.pypirc + +# Marimo +marimo/_static/ +marimo/_lsp/ +__marimo__/ + +# Streamlit +.streamlit/secrets.toml + +# Anecdotes +anecdotes.txt + +# Git +.git +.gitignore +.gitattributes + +# Docker +docker-compose.yml +Dockerfile +.docker +.dockerignore + +# GitHub +.github/ +README.md +LICENSE diff --git a/.github/workflows/ci-cd.yml b/.github/workflows/ci-cd.yml new file mode 100644 index 0000000..a882294 --- /dev/null +++ b/.github/workflows/ci-cd.yml @@ -0,0 +1,81 @@ +name: "CI/CD" + +on: + push: + branches: + - main + pull_request: + branches: + - main + +jobs: + python: + name: "Python: Lint & Typecheck" + runs-on: ubuntu-latest + steps: + - name: "Checkout" + uses: actions/checkout@v4 + + - name: "Install uv" + uses: astral-sh/setup-uv@v5 + + - name: "Set up Python" + uses: actions/setup-python@v5 + with: + python-version-file: pyproject.toml + + - name: "Install dependencies" + run: uv sync --locked + + - name: "Cache MyPy" + uses: actions/cache@v4 + with: + path: .mypy_cache + key: mypy-${{ runner.os }}-${{ hashFiles('uv.lock') }} + restore-keys: | + mypy-${{ runner.os }}- + + - name: "MyPy: Typecheck" + run: uv run mypy . + + - name: "Ruff: Static Analysis" + run: uv run ruff check . + + - name: "Ruff: Format Check" + run: uv run ruff format --check . + + docker: + name: "Docker: Build & Push Image" + runs-on: ubuntu-latest + needs: python + steps: + - name: "Checkout" + uses: actions/checkout@v4 + + - name: "Extract Docker image metadata" + id: meta + uses: docker/metadata-action@v5 + with: + images: ${{ secrets.DOCKER_USERNAME }}/${{ github.event.repository.name }} + tags: | + type=raw,value=latest + + - name: "Log in to Docker Hub" + uses: docker/login-action@v3 + with: + username: ${{ secrets.DOCKER_USERNAME }} + password: ${{ secrets.DOCKER_PASSWORD }} + + - name: "Set up Docker Buildx" + uses: docker/setup-buildx-action@v3 + + - name: "Build and push Docker image" + uses: docker/build-push-action@v6 + with: + push: ${{ github.event_name != 'pull_request' }} + tags: ${{ steps.meta.outputs.tags }} + annotations: ${{ steps.meta.outputs.annotations }} + provenance: true + sbom: true + cache-from: type=gha + cache-to: type=gha,mode=max diff --git a/.github/workflows/docker-ci.yml b/.github/workflows/docker-ci.yml deleted file mode 100644 index 871cbf8..0000000 --- a/.github/workflows/docker-ci.yml +++ /dev/null @@ -1,42 +0,0 @@ -name: "Docker CI" - -on: - push: - branches: - - main - pull_request: - -jobs: - build: - name: "Build & Push Docker Image" - runs-on: ubuntu-latest - steps: - - name: "Checkout" - uses: actions/checkout@v4 - - - name: "Extract Docker image metadata" - id: meta - uses: docker/metadata-action@v5 - with: - images: ${{ secrets.DOCKER_USERNAME }}/${{ github.event.repository.name }} - tags: | - type=sha,prefix= - type=raw,value=latest - - - name: "Log in to Docker Hub" - uses: docker/login-action@v3 - with: - username: ${{ secrets.DOCKER_USERNAME }} - password: ${{ secrets.DOCKER_PASSWORD }} - - - name: "Set up Docker Buildx" - uses: docker/setup-buildx-action@v3 - - - name: "Build and push Docker image" - uses: docker/build-push-action@v6 - with: - push: ${{ github.event_name != 'pull_request' }} - tags: ${{ steps.meta.outputs.tags }} - annotations: ${{ steps.meta.outputs.annotations }} - provenance: true - sbom: true diff --git a/.github/workflows/python-ci.yml b/.github/workflows/python-ci.yml deleted file mode 100644 index 124bf6a..0000000 --- a/.github/workflows/python-ci.yml +++ /dev/null @@ -1,43 +0,0 @@ -name: "Python CI" - -on: - push: - branches: - - main - paths: - - ".github/workflows/python-ci.yml" - - "pyproject.toml" - - "**/*.py" - pull_request: - paths: - - ".github/workflows/python-ci.yml" - - "pyproject.toml" - - "**/*.py" - -jobs: - lint: - name: "Lint & Typecheck" - runs-on: ubuntu-latest - steps: - - name: "Checkout" - uses: actions/checkout@v4 - - - name: "Install uv" - uses: astral-sh/setup-uv@v5 - - - name: "Set up Python" - uses: actions/setup-python@v5 - with: - python-version-file: pyproject.toml - - - name: "Install dependencies" - run: uv sync - - - name: "MyPy: Typecheck" - run: uv run mypy . - - - name: "Ruff: Static Analysis" - run: uv run ruff check . - - - name: "Ruff: Format Check" - run: uv run ruff format --check . diff --git a/Dockerfile b/Dockerfile index 1c68090..703c446 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,19 +1,23 @@ -FROM python:3.13-slim-bookworm +# Use slim image for smaller size +FROM python:3.13-slim -RUN apt-get update && apt-get install -y --no-install-recommends - -WORKDIR /app - -# Install uv +# Install uv package manager COPY --from=ghcr.io/astral-sh/uv:latest /uv /uvx /bin/ -COPY pyproject.toml uv.lock ./ +# Compile Python bytecode for faster startup +ENV UV_COMPILE_BYTECODE=1 + +# Set up application directory +WORKDIR /app -# Install dependencies -RUN uv sync --all-extras --no-dev +# Install Python dependencies using cached mounts for speed +RUN --mount=type=cache,target=/root/.cache/uv \ + --mount=type=bind,source=uv.lock,target=uv.lock \ + --mount=type=bind,source=pyproject.toml,target=pyproject.toml \ + uv sync --frozen --no-default-groups -COPY main.py ./ -COPY src/ src/ -COPY locales/ locales/ +# Copy all application files +ADD . . -CMD ["uv", "run", "--no-project", "main.py"] +# Start the bot +CMD ["uv", "run", "--no-sync", "main.py"]