-
Notifications
You must be signed in to change notification settings - Fork 3.3k
Tests / Build Scripts: Configure PHPStan level 0 #10419
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Closed
Closed
Changes from all commits
Commits
Show all changes
59 commits
Select commit
Hold shift + click to select a range
0308f9e
tests: phpstan level 0
justlevine b427ca6
Merge branch 'trunk' into tests/phpstan/level-0
justlevine a741131
chore: phpstan v2 and post merge cleanup
justlevine 88c5426
chore: cleanup readme
justlevine 03b4080
tests: remove unnecessary @phpstan-ignore
justlevine cd1149a
docs: add `never|void` return type to `wp_die()`
justlevine aec7e74
ci: run `build:dev`
justlevine acfeb8d
Merge branch 'trunk' into tests/phpstan/level-0
westonruter d429181
Update src/wp-includes/functions.php
justlevine de6d304
Update tests/phpstan/bootstrap.php
justlevine d43edb1
Update tests/phpstan/README.md
justlevine 8e5e8b0
Update .github/workflows/php-static-analysis.yml
justlevine 75c8c54
Merge branch 'trunk' into tests/phpstan/level-0
justlevine 4c255e5
PHPStan: Use explicit paths to avoid hanging on wp-content traversal
westonruter 522147a
Remove excludePaths for non-PHP directories since files already excluded
westonruter f77df14
Merge branch 'trunk' of https://github.com/WordPress/wordpress-develo…
westonruter baf4516
Address issues with class-wp-html-processor.php which required it to …
westonruter 1603823
Fix return types for core themes
westonruter 367af1c
Add variable return type for WP_Theme::get()
westonruter ae6c4b6
Ensure Customizer setting exists before setting transport to postMessage
westonruter 9d178c6
Pass empty strings instead of null in twenty_twenty_one_generate_css()
westonruter b1005dc
Ensure Twenty_Twenty_One_SVG_Icons::get_svg() always returns string v…
westonruter f95668e
Merge branch 'trunk' of https://github.com/WordPress/wordpress-develo…
westonruter 2f72407
Fix return types for Customize setting update methods
westonruter 22370b6
Update return value for WP_Customize_Background_Image_Setting::update()
westonruter 199f15f
Use phpstan as composer script name
westonruter ec446a1
Update phpstan as script name in docs
westonruter 420731d
Rename test:php:stan to typecheck:php
westonruter e0398cd
Declare 7.0.0 as the verison which introduced PHPStan
westonruter 8132f48
Fix paths in readme
westonruter 9ebcf81
Use US spelling of 'analyze' for consistency with the rest of the cod…
westonruter c87e560
Add baseline.php to list of files which triggers the workflow
westonruter ee31281
Fix grammar typo in readme
westonruter 1c1cb16
Use same version of actions/cache as rest of codebase
westonruter cc01268
CI: Optimize PHP Static Analysis by caching Gutenberg build
westonruter 77d9403
Improve placement and formatting of phpstan-return
westonruter 61f8a11
Fix wp_insert_user() so PHPStan won't hang
westonruter fd8f672
Fix handling of ArrayAccess since PHPStan still would hang
westonruter 512e368
Revert now-unnecessary change since $userdata is always an array
westonruter dd0727f
Update tests/phpunit/tests/user.php
justlevine dada996
Add assertion for warning
westonruter b883096
Merge branch 'trunk' of https://github.com/WordPress/wordpress-develo…
westonruter 646edd0
Merge branch 'trunk' of https://github.com/WordPress/wordpress-develo…
westonruter 03b9766
Update package.json
justlevine 7b9c9b1
Merge branch 'trunk' of https://github.com/WordPress/wordpress-develo…
westonruter 935e7e2
Replace phpstan-ignore-next-line comment with returning false
westonruter 34d5a05
Add isset.variable error suppression for extracted var
westonruter 4513d92
CI: Report PHPStan errors as warnings in reusable workflow
westonruter 6a46b90
Build: Add phpstan task and include it in precommit:php
westonruter 18ecd38
Disable reportUnmatchedIgnoredErrors to allow ignoring errors for str…
westonruter 6d7f578
Revert reportUnmatchedIgnoredErrors and ignoring isset.variable in fa…
westonruter 05a968f
Invoke PHPStan via composer and remove phpstan-ignore comment to test
westonruter f3990da
Restore phpstan-ignore comment
westonruter 57d6d90
Remove Gutenberg cache for initial commit
westonruter 4486d82
Rename workflows to be specific for PHPStan
westonruter 88d619b
Pin phpstan at latest version
westonruter 2a1c830
Merge branch 'trunk' into tests/phpstan/level-0
westonruter 12dc127
Remove redundant paths in scanDirectories
westonruter 83246de
Fix return description for wp_die()
westonruter File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1,97 @@ | ||
| name: PHPStan Static Analysis | ||
|
|
||
| on: | ||
| # PHPStan testing was introduced in 7.0.0. | ||
| push: | ||
| branches: | ||
| - trunk | ||
| - '[7-9].[0-9]' | ||
| tags: | ||
| - '[7-9].[0-9]' | ||
| - '[7-9]+.[0-9].[0-9]+' | ||
| pull_request: | ||
| branches: | ||
| - trunk | ||
| - '[7-9].[0-9]' | ||
| paths: | ||
| # This workflow only scans PHP files. | ||
| - '**.php' | ||
| # These files configure Composer. Changes could affect the outcome. | ||
| - 'composer.*' | ||
| # These files configure PHPStan. Changes could affect the outcome. | ||
| - 'phpstan.neon.dist' | ||
| - 'tests/phpstan/base.neon' | ||
westonruter marked this conversation as resolved.
Show resolved
Hide resolved
westonruter marked this conversation as resolved.
Show resolved
Hide resolved
|
||
| - 'tests/phpstan/baseline.php' | ||
| # Confirm any changes to relevant workflow files. | ||
| - '.github/workflows/phpstan-static-analysis.yml' | ||
| - '.github/workflows/reusable-phpstan-static-analysis.yml' | ||
| workflow_dispatch: | ||
|
|
||
| # Cancels all previous workflow runs for pull requests that have not completed. | ||
| concurrency: | ||
| # The concurrency group contains the workflow name and the branch name for pull requests | ||
| # or the commit hash for any other events. | ||
| group: ${{ github.workflow }}-${{ github.event_name == 'pull_request' && github.head_ref || github.sha }} | ||
| cancel-in-progress: true | ||
|
|
||
| # Disable permissions for all available scopes by default. | ||
| # Any needed permissions should be configured at the job level. | ||
| permissions: {} | ||
|
|
||
| jobs: | ||
| # Runs PHPStan Static Analysis. | ||
| phpstan: | ||
| name: PHP static analysis | ||
| uses: ./.github/workflows/reusable-phpstan-static-analysis.yml | ||
| permissions: | ||
| contents: read | ||
| if: ${{ github.repository == 'WordPress/wordpress-develop' || ( github.event_name == 'pull_request' && github.actor != 'dependabot[bot]' ) }} | ||
|
|
||
| slack-notifications: | ||
| name: Slack Notifications | ||
| uses: ./.github/workflows/slack-notifications.yml | ||
| permissions: | ||
| actions: read | ||
| contents: read | ||
| needs: [ phpstan ] | ||
| if: ${{ github.repository == 'WordPress/wordpress-develop' && github.event_name != 'pull_request' && always() }} | ||
| with: | ||
| calling_status: ${{ contains( needs.*.result, 'cancelled' ) && 'cancelled' || contains( needs.*.result, 'failure' ) && 'failure' || 'success' }} | ||
| secrets: | ||
| SLACK_GHA_SUCCESS_WEBHOOK: ${{ secrets.SLACK_GHA_SUCCESS_WEBHOOK }} | ||
| SLACK_GHA_CANCELLED_WEBHOOK: ${{ secrets.SLACK_GHA_CANCELLED_WEBHOOK }} | ||
| SLACK_GHA_FIXED_WEBHOOK: ${{ secrets.SLACK_GHA_FIXED_WEBHOOK }} | ||
| SLACK_GHA_FAILURE_WEBHOOK: ${{ secrets.SLACK_GHA_FAILURE_WEBHOOK }} | ||
|
|
||
| failed-workflow: | ||
| name: Failed workflow tasks | ||
| runs-on: ubuntu-24.04 | ||
| permissions: | ||
| actions: write | ||
| needs: [ slack-notifications ] | ||
| if: | | ||
| always() && | ||
| github.repository == 'WordPress/wordpress-develop' && | ||
| github.event_name != 'pull_request' && | ||
| github.run_attempt < 2 && | ||
| ( | ||
| contains( needs.*.result, 'cancelled' ) || | ||
| contains( needs.*.result, 'failure' ) | ||
| ) | ||
|
|
||
| steps: | ||
| - name: Dispatch workflow run | ||
| uses: actions/github-script@60a0d83039c74a4aee543508d2ffcb1c3799cdea # v7.0.1 | ||
| with: | ||
| retries: 2 | ||
| retry-exempt-status-codes: 418 | ||
| script: | | ||
| github.rest.actions.createWorkflowDispatch({ | ||
| owner: context.repo.owner, | ||
| repo: context.repo.repo, | ||
| workflow_id: 'failed-workflow.yml', | ||
| ref: 'trunk', | ||
| inputs: { | ||
| run_id: `${context.runId}`, | ||
| } | ||
| }); | ||
westonruter marked this conversation as resolved.
Show resolved
Hide resolved
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1,109 @@ | ||
| ## | ||
| # A reusable workflow that runs PHP Static Analysis tests. | ||
| ## | ||
| name: PHP Static Analysis | ||
|
|
||
| on: | ||
| workflow_call: | ||
| inputs: | ||
| php-version: | ||
| description: 'The PHP version to use.' | ||
| required: false | ||
| type: 'string' | ||
| default: 'latest' | ||
|
|
||
| # Disable permissions for all available scopes by default. | ||
| # Any needed permissions should be configured at the job level. | ||
| permissions: {} | ||
|
|
||
| jobs: | ||
| # Runs PHP static analysis tests. | ||
| # | ||
| # Violations are reported inline with annotations. | ||
| # | ||
| # Performs the following steps: | ||
| # - Checks out the repository. | ||
| # - Sets up PHP. | ||
| # - Logs debug information. | ||
| # - Installs Composer dependencies. | ||
| # - Configures caching for PHP static analysis scans. | ||
| # - Make Composer packages available globally. | ||
| # - Runs PHPStan static analysis (with Pull Request annotations). | ||
| # - Saves the PHPStan result cache. | ||
| # - Ensures version-controlled files are not modified or deleted. | ||
| phpstan: | ||
| name: Run PHP static analysis | ||
| runs-on: ubuntu-24.04 | ||
| permissions: | ||
| contents: read | ||
| timeout-minutes: 20 | ||
|
|
||
| steps: | ||
| - name: Checkout repository | ||
| uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0 | ||
| with: | ||
| show-progress: ${{ runner.debug == '1' && 'true' || 'false' }} | ||
| persist-credentials: false | ||
|
|
||
| - name: Set up Node.js | ||
| uses: actions/setup-node@2028fbc5c25fe9cf00d9f06a71cc4710d4507903 # v6.0.0 | ||
| with: | ||
| node-version-file: '.nvmrc' | ||
| cache: npm | ||
|
|
||
| - name: Set up PHP | ||
| uses: shivammathur/setup-php@20529878ed81ef8e78ddf08b480401e6101a850f # v2.35.3 | ||
| with: | ||
| php-version: ${{ inputs.php-version }} | ||
| coverage: none | ||
| tools: cs2pr | ||
|
|
||
| # This date is used to ensure that the Composer cache is cleared at least once every week. | ||
| # http://man7.org/linux/man-pages/man1/date.1.html | ||
| - name: "Get last Monday's date" | ||
| id: get-date | ||
| run: echo "date=$(/bin/date -u --date='last Mon' "+%F")" >> "$GITHUB_OUTPUT" | ||
|
|
||
| - name: General debug information | ||
| run: | | ||
| npm --version | ||
| node --version | ||
| composer --version | ||
|
|
||
| # Since Composer dependencies are installed using `composer update` and no lock file is in version control, | ||
| # passing a custom cache suffix ensures that the cache is flushed at least once per week. | ||
| - name: Install Composer dependencies | ||
| uses: ramsey/composer-install@3cf229dc2919194e9e36783941438d17239e8520 # v3.1.1 | ||
| with: | ||
| custom-cache-suffix: ${{ steps.get-date.outputs.date }} | ||
|
|
||
| - name: Make Composer packages available globally | ||
| run: echo "${PWD}/vendor/bin" >> "$GITHUB_PATH" | ||
|
|
||
| - name: Install npm dependencies | ||
| run: npm ci --ignore-scripts | ||
|
|
||
| - name: Build WordPress | ||
| run: npm run build:dev | ||
|
|
||
| - name: Cache PHP Static Analysis scan cache | ||
| uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0 | ||
| with: | ||
| path: .cache # This is defined in the base.neon file. | ||
| key: "phpstan-result-cache-${{ github.run_id }}" | ||
| restore-keys: | | ||
| phpstan-result-cache- | ||
|
|
||
| - name: Run PHP static analysis tests | ||
| id: phpstan | ||
| run: composer run phpstan -- -vvv --error-format=checkstyle | cs2pr --errors-as-warnings --graceful-warnings | ||
|
|
||
| - name: "Save result cache" | ||
| uses: actions/cache@0057852bfaa89a56745cba8c7296529d2fc39830 # v4.3.0 | ||
| if: ${{ !cancelled() }} | ||
| with: | ||
| path: .cache | ||
| key: "phpstan-result-cache-${{ github.run_id }}" | ||
westonruter marked this conversation as resolved.
Show resolved
Hide resolved
|
||
|
|
||
| - name: Ensure version-controlled files are not modified or deleted | ||
| run: git diff --exit-code | ||
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -0,0 +1,36 @@ | ||
| # PHPStan configuration for WordPress Core. | ||
| # | ||
| # To overload this configuration, copy this file to phpstan.neon and adjust as needed. | ||
| # | ||
| # https://phpstan.org/config-reference | ||
|
|
||
| includes: | ||
| # The base configuration file for using PHPStan with the WordPress core codebase. | ||
| - tests/phpstan/base.neon | ||
|
|
||
| # The baseline file includes preexisting errors in the codebase that should be ignored. | ||
| # https://phpstan.org/user-guide/baseline | ||
| - tests/phpstan/baseline.php | ||
|
|
||
| parameters: | ||
| # https://phpstan.org/user-guide/rule-levels | ||
| level: 0 | ||
| reportUnmatchedIgnoredErrors: true | ||
|
|
||
| ignoreErrors: | ||
| # Level 0: | ||
| - # Inner functions aren't supported by PHPStan. | ||
| message: '#Function wxr_[a-z_]+ not found#' | ||
| path: src/wp-admin/includes/export.php | ||
| - | ||
| identifier: function.inner | ||
| path: src/wp-admin/includes/export.php | ||
| count: 13 | ||
| - | ||
| identifier: function.inner | ||
| path: src/wp-admin/includes/file.php | ||
| count: 1 | ||
| - | ||
| identifier: function.inner | ||
| path: src/wp-includes/canonical.php | ||
| count: 1 |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
|
Member
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. @dmsnell FYI the two lines added to this file. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Uh oh!
There was an error while loading. Please reload this page.