TASK: Run browser E2E from dedicated runner image against runtime services #62

Closed
opened 2026-06-17 19:31:30 -04:00 by darkhelm · 0 comments
Owner

Summary

Hardens CI workflows for self-hosted Gitea runners by stabilizing E2E execution and Renovate behavior across internal/external network paths.

Closes #62

What Changed

E2E workflow reliability

  • Fixed E2E workspace handoff to ensure expected repository contents are present during test execution.
  • Added stricter preflight checks for required frontend files before running E2E.
  • Reduced mount/path fragility while preserving runtime image pull and compose flow.

Renovate workflow hardening

  • Added internal-first endpoint reachability selection with fallback handling.
  • Added token preflight checks for repository access.
  • Added explicit host-rule auth handling for API/git paths.
  • Added container-level connectivity preflight diagnostics.
  • Added git URL override aligned with selected endpoint context.
  • Removed incorrect forced Dogar host-IP pinning that broke HTTPS clone routing.

Why

CI behavior was sensitive to runner networking and Renovate clone/auth interactions. These changes make the workflow deterministic in our runner topology and address recurring CI failures.

Scope

  • Workflow logic only (cicd.yaml, renovate.yml)
  • No app feature or API behavior changes

Validation

  • Workflow YAML validation passed during updates.
  • Changes were applied and verified iteratively from real failing run diagnostics.
## Summary Hardens CI workflows for self-hosted Gitea runners by stabilizing E2E execution and Renovate behavior across internal/external network paths. Closes #62 ## What Changed ### E2E workflow reliability - Fixed E2E workspace handoff to ensure expected repository contents are present during test execution. - Added stricter preflight checks for required frontend files before running E2E. - Reduced mount/path fragility while preserving runtime image pull and compose flow. ### Renovate workflow hardening - Added internal-first endpoint reachability selection with fallback handling. - Added token preflight checks for repository access. - Added explicit host-rule auth handling for API/git paths. - Added container-level connectivity preflight diagnostics. - Added git URL override aligned with selected endpoint context. - Removed incorrect forced Dogar host-IP pinning that broke HTTPS clone routing. ## Why CI behavior was sensitive to runner networking and Renovate clone/auth interactions. These changes make the workflow deterministic in our runner topology and address recurring CI failures. ## Scope - Workflow logic only (`cicd.yaml`, `renovate.yml`) - No app feature or API behavior changes ## Validation - Workflow YAML validation passed during updates. - Changes were applied and verified iteratively from real failing run diagnostics.
darkhelm changed title from Run browser E2E from dedicated runner image against runtime services to TASK: Run browser E2E from dedicated runner image against runtime services 2026-06-18 11:55:55 -04:00
darkhelm added the ops label 2026-06-18 11:57:16 -04:00
darkhelm added this to the E10 - Separate deployable runtime images from CI milestone 2026-06-18 11:58:12 -04:00
darkhelm added this to the Main Project Board project 2026-06-18 11:59:04 -04:00
copilotcoder was assigned by darkhelm 2026-06-18 11:59:39 -04:00
darkhelm added the afkdevextask labels 2026-06-18 12:04:22 -04:00
darkhelm moved this to To Do in Main Project Board on 2026-06-19 09:23:57 -04:00
darkhelm moved this to In Progress in Main Project Board on 2026-07-05 22:50:52 -04:00
darkhelm moved this to Done in Main Project Board on 2026-07-13 11:16:48 -04:00
Sign in to join this conversation.