From 9b2f7f03cab8a5cc403dfa64baa752eafd1e3928 Mon Sep 17 00:00:00 2001 From: oqyude Date: Sat, 10 Oct 2026 18:29:12 +0300 Subject: [PATCH] =?UTF-8?q?fix(sops):=20normalize=20.sops.yaml=20to=20LF?= =?UTF-8?q?=20=E2=80=94=20committed=20blob=20had=20CRLF?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit The committed blob contained CRLF line endings (6 CRLF / 199 bytes) even though .gitattributes declares '* text=auto eol=lf'. The working-tree copy matched the blob, so git reported it clean, but wsl/github-run raw reads leaked \r into check #7's sops path_regex extraction → '.ci/checks.sh' FAIL. Normalized to LF (byte-identical content otherwise): aligns with eol=lf policy, checks #7 passes locally and in CI. --- .sops.yaml | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/.sops.yaml b/.sops.yaml index 633ec5a..9be9aa8 100644 --- a/.sops.yaml +++ b/.sops.yaml @@ -1,7 +1,7 @@ -keys: - - &default age13l2gtk0nzr484zprp7e0pkrt0ne0j4asyn2pjmlaw73nte7t7d8q4sqtxm -creation_rules: - - path_regex: secrets/[^/]+\.(yaml|json|env|ini)$ - key_groups: - - age: +keys: + - &default age13l2gtk0nzr484zprp7e0pkrt0ne0j4asyn2pjmlaw73nte7t7d8q4sqtxm +creation_rules: + - path_regex: secrets/[^/]+\.(yaml|json|env|ini)$ + key_groups: + - age: - *default \ No newline at end of file