name: "Terraform Plan" on: pull_request: env: TF_CLOUD_ORGANIZATION: "MealCraft" TF_API_TOKEN: "${{ secrets.TF_API_TOKEN }}" TF_WORKSPACE: "production" CONFIG_DIRECTORY: aws_environment TF_VAR_public_ip: "${{ secrets.PUBLIC_IP }}" jobs: terraform: if: github.repository != 'hashicorp-education/learn-terraform-github-actions' name: "Terraform Plan" runs-on: mealcraft-runners container: image: ghcr.io/catthehacker/ubuntu:runner-22.04 permissions: contents: read pull-requests: write steps: - name: Checkout uses: actions/checkout@v3 - name: Debug Paths run: | echo "Workspace: $GITHUB_WORKSPACE" ls -R . echo "CONFIG_DIRECTORY: $CONFIG_DIRECTORY" ls -R "$CONFIG_DIRECTORY" - name: Upload Configuration uses: hashicorp/tfc-workflows-github/actions/upload-configuration@v1.0.0 id: plan-upload with: workspace: ${{ env.TF_WORKSPACE }} directory: ${{ env.CONFIG_DIRECTORY }} speculative: true - name: Create Plan Run uses: hashicorp/tfc-workflows-github/actions/create-run@v1.0.0 id: plan-run with: workspace: ${{ env.TF_WORKSPACE }} configuration_version: ${{ steps.plan-upload.outputs.configuration_version_id }} plan_only: true - name: Get Plan Output uses: hashicorp/tfc-workflows-github/actions/plan-output@v1.0.0 id: plan-output with: plan: ${{ fromJSON(steps.plan-run.outputs.payload).data.relationships.plan.data.id }} - name: Update PR uses: actions/github-script@v6 id: plan-comment with: github-token: ${{ secrets.GITHUB_TOKEN }} script: | // 1. Retrieve existing bot comments for the PR const { data: comments } = await github.rest.issues.listComments({ owner: context.repo.owner, repo: context.repo.repo, issue_number: context.issue.number, }); const botComment = comments.find(comment => { return comment.user.type === 'Bot' && comment.body.includes('Terraform Cloud Plan Output') }); const output = `#### Terraform Cloud Plan Output \`\`\` Plan: ${{ steps.plan-output.outputs.add }} to add, ${{ steps.plan-output.outputs.change }} to change, ${{ steps.plan-output.outputs.destroy }} to destroy. \`\`\` [Terraform Cloud Plan](${{ steps.plan-run.outputs.run_link }}) `; if (botComment) { github.rest.issues.deleteComment({ owner: context.repo.owner, repo: context.repo.repo, comment_id: botComment.id, }); } github.rest.issues.createComment({ issue_number: context.issue.number, owner: context.repo.owner, repo: context.repo.repo, body: output }) - name: Print TF_VAR_public_ip run: 'echo "📡 Public IP used by Terraform: $TF_VAR_public_ip"'