Skip to main content

repo-standards

repo-standards measures pull-request review size without executing repository code. Its repository rules are available for review but remain disabled until individually approved and explicitly activated by a consumer.

After a rule is approved, opt in per run with --enable-rule <rule-id>. Approval alone never enables a rule, and the option may be repeated for multiple approved rules.

Run it

Use the current release without installing it:

uvx --from repo-standards repo-standards pull-request size . --base origin/main

For a persistent user installation:

uv tool install repo-standards
repo-standards pull-request size . --base origin/main

Upgrade with uv tool upgrade repo-standards. Automation should pin the package version or the GitHub Action's full commit SHA.

GitHub Action

The Action measures size only. It enables no repository lint rules and needs no inputs on a pull_request event.

name: Pull-request size

on:
  pull_request:

permissions:
  contents: read

jobs:
  size:
    runs-on: ubuntu-latest
    timeout-minutes: 10
    steps:
      - uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7
        with:
          fetch-depth: 0
          persist-credentials: false
      - uses: sarj-ai/repo-standards@51a3e338cf509f1523c6b812b1ddd27de5c3b46f # v3.0.1

The Action emits counted, excluded, and total line counts plus canonical JSON. Tests are recognized across Python, JavaScript/TypeScript, Go, JVM, Android, Xcode/Swift, .NET, Ruby, and Bats conventions. Mark generated or machine-owned artifacts in the trusted base revision:

path/to/generated/** pr-size-excluded

Thresholds, labels, comments, and approval requirements remain consumer policy. Use pull_request, never pull_request_target; this metric is not a security gate.

Live GitHub evidence

Live governance checks are explicit and read-only. Supply a repository whose token can read metadata, branch protection, rulesets, and Actions settings:

export SARJ_REPO_LINT_GITHUB_TOKEN=...
repo-standards check . \
  --github-repository owner/repository \
  --require-github-evidence \
  --policy sarj \
  --format json

Without SARJ_REPO_LINT_GITHUB_TOKEN, the CLI can reuse an authenticated gh session. Live delivery checks require the selected revision to match the default-branch head.

Safety model

  • Repository contents come from one exact Git tree.
  • Workflow YAML and API descriptions are parsed as inert data.
  • GitHub access is read-only and credentials never come from inspected configuration.
  • Missing required evidence produces an inconclusive result rather than a false pass.
  • The linter has no autofix or repository mutation mode.

Repositories with production, preview, and development branches can declare and verify continuous hotfix propagation. See Delivery and CI/CD policy for the complete evidence model.

Development

uv sync --locked
uv run pytest
uv run ruff check .
uv run basedpyright
uvx --no-config --isolated --python 3.14 \
  --from sarj-standards-bootstrap==2.0.0 \
  code-standards check --trust-repository-code

Build the same wheel and source distribution used by publishing:

uv build --no-sources

Releases are reconcilable. The protected workflow independently repairs a missing PyPI publication or GitHub Release from the same verified source revision.

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

repo_standards-3.0.1.tar.gz (116.4 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

repo_standards-3.0.1-py3-none-any.whl (133.6 kB view details)

Uploaded Python 3

File details

Details for the file repo_standards-3.0.1.tar.gz.

File metadata

  • Download URL: repo_standards-3.0.1.tar.gz
  • Upload date:
  • Size: 116.4 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for repo_standards-3.0.1.tar.gz
Algorithm Hash digest
SHA256 26abe4a38aee6536617e7b0b8fe1a235731bae37a23efbecd934456d47ae623c
MD5 1d116ed4f9f28da217ff48aa22aadcd7
BLAKE2b-256 70c57f861cd587d19dd108a103496f11f3da6855dfa2d1a18fe4c75d4bae9de8

See more details on using hashes here.

Provenance

The following attestation bundles were made for repo_standards-3.0.1.tar.gz:

Publisher: publish.yml on sarj-ai/repo-standards

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file repo_standards-3.0.1-py3-none-any.whl.

File metadata

  • Download URL: repo_standards-3.0.1-py3-none-any.whl
  • Upload date:
  • Size: 133.6 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for repo_standards-3.0.1-py3-none-any.whl
Algorithm Hash digest
SHA256 2624597374c17aba3edef5ffcc2d7cbb31377b984eacbf102de2c12ce550c2fe
MD5 b89f92503f10a7b3528e181a199297f4
BLAKE2b-256 8b5a87bb7dc2f5f20cc8590b3e2b2f8bc83d7262a828e4b6975a378e04ce29c4

See more details on using hashes here.

Provenance

The following attestation bundles were made for repo_standards-3.0.1-py3-none-any.whl:

Publisher: publish.yml on sarj-ai/repo-standards

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Release history Release notifications | RSS feed

5.1.0

2 files

5.0.1

2 files

5.0.0

2 files

4.0.2

2 files

4.0.1

2 files

4.0.0

2 files

3.0.2

2 files

This release

3.0.1 This release

2 files

3.0.0

2 files

2.0.0

2 files

1.0.0

2 files

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page