fix(build): keep macOS ._*/.DS_Store junk out of the image

A Mac-staged tree (BSD tar materializes extended attributes as ._<name>
sidecars) went through the docker build and one landed in
internal/store/migrations/ — //go:embed-ed into the binary, where every
`felis migrate` then died with 'migration "._0004..." has a non-numeric
version'. Observed live wiring up the auditfix42 image: the installer's own
run_migrations failed on it. Exclude the sidecars and .DS_Store from the
build context; deploy/*.yaml and plugins/ have the same exposure.
This commit is contained in:
Lemon-miaow committed 2026-09-23 19:19:04 +08:00
1 parent b8e554dac7
commit 5fa8b7412e
1 file changed
+11
+11
View File
@@ -31,3 +31,14 @@ Dockerfile
*.key
felis
felis.exe
# macOS materializes extended attributes as ._<name> sidecars (BSD tar uploads,
# Finder copies, network volumes) and leaves .DS_Store behind. Neither is
# source, and one is actively harmful: a ._*.sql beside the migrations is
# //go:embed-ed into the binary and makes every `felis migrate` fail
# ("non-numeric version") — observed live on a Mac-staged tree. Same exposure
# for any tree the other //go:embed patterns walk (deploy/, plugins/).
._*
**/._*
.DS_Store
**/.DS_Store