circleci

Sử dụng khi viết, chỉnh sửa hoặc xem xét cấu hình CircleCI cho kho lưu trữ Astronomer APC. Bao gồm tổ chức script, script nội tuyến so với script bên ngoài, và…

npx skills add https://github.com/astronomer/astronomer --skill circleci

CircleCI Configuration Guide

Critical Rules

  1. No long inline scripts — script logic for any language must not be written inline in .circleci/config.yml if the script has complicated flow control. Complicated scripts belong in bin/.
  2. Scripts live in bin/ — every script called from CircleCI must exist as a file in the bin/ directory with an appropriate extension (e.g. bin/my-script.sh, bin/my-script.py).
  3. Pin all versions — never use latest or unpinned tags for Docker images or installed tools. Always specify an exact version to prevent supply chain vulnerabilities and ensure reproducible builds.

Script Organization

Scripts invoked by CircleCI jobs must be committed to the repository under bin/ so they can be:

  • Linted and reviewed like any other source file
  • Tested and run locally without needing CI
  • Reused across multiple jobs or workflows
# ✅ CORRECT — call a script from bin/
steps:
  - run:
      name: Build Helm chart
      command: bin/build-helm-chart.sh
# ❌ WRONG — inline shell logic in the CircleCI config
steps:
  - run:
      name: Build Helm chart
      command: |
        helm package .
        mv astronomer-*.tgz /tmp/chart/

Config Generation Pipeline

.circleci/config.yml is never edited directly. It is a generated file produced by rendering the Jinja2 template .circleci/config.yml.j2 via bin/generate_circleci_config.py:

# Regenerate config.yml from the template
uv run bin/generate_circleci_config.py

The generator injects a small set of computed variables (e.g. ci_runner_version, kube_versions, machine_image_version, docker_images) into the template at render time. Always edit .circleci/config.yml.j2, then regenerate.


Version Pinning

Always pin exact versions for Docker images and any tools installed during a job. Using latest or loose tags introduces supply chain risk and makes builds non-reproducible.

All pinned versions must be declared as Jinja2 variables at the top of .circleci/config.yml.j2, not scattered inline throughout the file. This makes them easy to audit and update in one place. All version declarations must include a link to where the list of released versions can be found, so that updating them is straightforward and doesn't require searching online to find more recent releases.

{# ✅ CORRECT — versions declared at top of config.yml.j2 #}
{#- https://circleci.com/docs/guides/execution-managed/building-docker-images/#docker-version -#}
{%- set circleci_docker_version = 'docker23' -%}

{#- https://circleci.com/developer/machine/image/ubuntu-2404 -#}
{%- set machine_image_version = 'ubuntu-2404:2025.09.1' -%}
# Then referenced inline:
docker:
  - image: cimg/python:{{ python_image_version }}
# ❌ WRONG — version hardcoded inline, not declared at top
docker:
  - image: cimg/python:3.8.1
# ❌ WRONG — unpinned image
docker:
  - image: cimg/python:latest
# ✅ CORRECT — pinned tool version installed in a step
- run:
    name: Install helm
    command: bin/install-ci-tools.py 3.17.2

# ❌ WRONG — unversioned tool install
- run:
    name: Install helm
    command: curl https://raw.githubusercontent.com/helm/helm/main/scripts/get-helm-3 | bash

Thêm skills từ astronomer

airflow-adapter
astronomer
Mẫu adapter Airflow cho khả năng tương thích API v2/v3. Sử dụng khi làm việc với các adapter, phát hiện phiên bản, hoặc thêm các phương thức API mới cần hoạt động trên…
official
aip-user-stories
astronomer
Tạo các sổ tay công thức đã được xác minh từ các AIP có triển khai PR (chế độ post) hoặc các câu chuyện người dùng suy đoán từ các AIP chưa có triển khai (chế độ pre). Sử dụng…
official
airflow-java-sdk
astronomer
Guide for contributing to the Airflow Java SDK (AIP-108). Use this skill whenever a contributor is working in the `java-sdk/` directory or on the Java…
official
airflow-new-sdk
astronomer
Hướng dẫn triển khai SDK ngôn ngữ hoàn toàn mới cho Airflow (AIP-108). Sử dụng kỹ năng này khi người đóng góp muốn thêm hỗ trợ cho một ngôn ngữ lập trình mới —…
official
airflow-translations
astronomer
Thêm hoặc cập nhật bản dịch cho giao diện Apache Airflow. Hướng dẫn thiết lập ngôn ngữ, tạo khung tệp dịch, dịch với ngôn ngữ cụ thể…
official
magpie-setup
astronomer
Áp dụng và duy trì framework apache-magpie trong kho dự án thông qua cơ chế áp dụng dựa trên snapshot. Kỹ năng framework duy nhất được cam kết trong…
official
prepare-providers-documentation
astronomer
Replace the manual commit-by-commit classification step in `breeze release-management prepare-provider-documentation` with AI-driven classification. For each…
official
chart-tests
astronomer
Sử dụng khi viết, chỉnh sửa, xem xét hoặc chạy các bài kiểm tra biểu đồ Helm cho kho lưu trữ Astronomer APC. Bao gồm các mẫu pytest, cách sử dụng render_chart(), biểu đồ con…
official