name: Build and Push Docker Image on: push: branches: [ main ] tags: [ 'v*' ] pull_request: branches: [ main ] workflow_dispatch: inputs: tag: description: 'Image tag (default: latest)' required: false default: 'latest' env: REGISTRY: ghcr.io IMAGE_NAME: ${{ github.repository }} jobs: build: strategy: matrix: include: - platform: linux/amd64 runner: ubuntu-latest suffix: amd64 - platform: linux/arm64 runner: ubuntu-24.04-arm suffix: arm64 runs-on: ${{ matrix.runner }} permissions: contents: read packages: write steps: - name: Checkout repository uses: actions/checkout@v4 - name: Setup Node.js uses: actions/setup-node@v4 with: node-version: '22' cache: 'npm' - name: Install dependencies run: npm ci - name: Run Tests run: npm test - name: Set up Docker Buildx uses: docker/setup-buildx-action@v3 - name: Log in to Container Registry if: github.event_name != 'pull_request' uses: docker/login-action@v3 with: registry: ${{ env.REGISTRY }} username: ${{ github.actor }} password: ${{ secrets.GITHUB_TOKEN }} - name: Extract metadata id: meta uses: docker/metadata-action@v5 with: images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }} tags: | type=ref,event=branch,suffix=-${{ matrix.suffix }} type=ref,event=pr,suffix=-${{ matrix.suffix }} type=semver,pattern={{version}},suffix=-${{ matrix.suffix }} type=sha,prefix={{branch}}-,suffix=-${{ matrix.suffix }} - name: Build and push Docker image uses: docker/build-push-action@v5 with: context: . push: ${{ github.event_name != 'pull_request' }} tags: ${{ steps.meta.outputs.tags }} labels: ${{ steps.meta.outputs.labels }} cache-from: type=gha,scope=${{ matrix.suffix }} cache-to: type=gha,mode=max,scope=${{ matrix.suffix }} platforms: ${{ matrix.platform }} manifest: needs: build if: github.event_name != 'pull_request' runs-on: ubuntu-latest permissions: contents: read packages: write steps: - name: Log in to Container Registry uses: docker/login-action@v3 with: registry: ${{ env.REGISTRY }} username: ${{ github.actor }} password: ${{ secrets.GITHUB_TOKEN }} - name: Extract metadata id: meta uses: docker/metadata-action@v5 with: images: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }} tags: | type=ref,event=branch type=semver,pattern={{version}} type=semver,pattern={{major}}.{{minor}} type=semver,pattern={{major}} type=sha,prefix={{branch}}- type=raw,value=${{ inputs.tag }},enable=${{ github.event_name == 'workflow_dispatch' }} - name: Create and push multi-arch manifest run: | TAGS="${{ steps.meta.outputs.tags }}" for TAG in $TAGS; do echo "Creating manifest for $TAG" docker manifest create "$TAG" \ "${TAG}-amd64" \ "${TAG}-arm64" || true docker manifest push "$TAG" || true done