Repository navigation
Upgrade workflows to gh-aw v0.91.6 - #14638
Conversation
Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
🔒 mcpg Read-Only Stress — defaultSurface coverage: MCP tool calls + proxied CLI (REST) + GraphQL mutations
Overall: INCONCLUSIVE No write leaked in any surface. Gaps: (1) Part B's 7 write tools are entirely absent from the exposed MCP catalog (gh-aw's
|
There was a problem hiding this comment.
🟢 Approval recommended
The version, action pins, refreshed guidance, and all 34 generated workflows are consistent with v0.91.6 and reported validation passed.
0 open findings
What changed in this PR
Upgrades the repository’s agentic workflow toolchain to gh-aw v0.91.6 and regenerates all workflow artifacts.
Changes:
- Updates gh-aw actions, container images, and digest pins.
- Recompiles all 34 agentic workflows.
- Refreshes dispatcher guidance for security reviews and Git-backed work queues.
| File | Description |
|---|---|
.github/agents/agentic-workflows.md |
Adds work-queue routing guidance. |
.github/skills/agentic-workflows/SKILL.md |
Adds security-review and work-queue guidance. |
.github/aw/actions-lock.json |
Updates action and container pins. |
.github/workflows/agentics-maintenance.yml |
Updates maintenance actions to v0.91.6. |
.github/workflows/daily-compliance-checker.lock.yml |
Recompiled workflow. |
.github/workflows/duplicate-code-detector.lock.yml |
Recompiled workflow. |
.github/workflows/gateway-issue-dispatcher.lock.yml |
Recompiled workflow. |
.github/workflows/ghcr-download-tracker.lock.yml |
Recompiled workflow. |
.github/workflows/github-mcp-guard-coverage-checker.lock.yml |
Recompiled workflow. |
.github/workflows/go-fan.lock.yml |
Recompiled workflow. |
.github/workflows/go-logger.lock.yml |
Recompiled workflow. |
.github/workflows/gpl-dependency-checker.lock.yml |
Recompiled workflow. |
.github/workflows/guard-status-tracker.lock.yml |
Recompiled workflow. |
.github/workflows/integrity-filtering-audit.lock.yml |
Recompiled workflow. |
.github/workflows/issue-monster.lock.yml |
Recompiled workflow. |
.github/workflows/large-payload-tester.lock.yml |
Recompiled workflow. |
.github/workflows/mcp-gateway-log-analyzer.lock.yml |
Recompiled workflow. |
.github/workflows/nightly-docs-reconciler.lock.yml |
Recompiled workflow. |
.github/workflows/nightly-schema-updater.lock.yml |
Recompiled workflow. |
.github/workflows/nightly-workflow-compiler.lock.yml |
Recompiled workflow. |
.github/workflows/plan.lock.yml |
Recompiled workflow. |
.github/workflows/readonly-stress-default.lock.yml |
Recompiled workflow. |
.github/workflows/release.lock.yml |
Recompiled workflow. |
.github/workflows/repo-assist.lock.yml |
Recompiled workflow. |
.github/workflows/rust-guard-improver.lock.yml |
Recompiled workflow. |
.github/workflows/semantic-function-refactor.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-allowonly.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-copilot.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-long-session.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-otel-tracing.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-proxy-github-script.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-safeoutputs-discussions.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-safeoutputs-issues.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-safeoutputs-labels.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-safeoutputs-prs.lock.yml |
Recompiled workflow. |
.github/workflows/smoke-safeoutputs-reviews.lock.yml |
Recompiled workflow. |
.github/workflows/test-coverage-improver.lock.yml |
Recompiled workflow. |
.github/workflows/test-improver.lock.yml |
Recompiled workflow. |
🧠 Review effort: Balanced
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Summary
Upgrades the gh-aw extension and generated workflows from v0.91.4 to the latest available pre-release, v0.91.6.
Changes
gh aw upgrade --pre-releasesValidation
gh aw compile— 34/34 workflows compiled successfullymake agent-finished— passedThe compiler reports the same non-fatal workflow warnings for direct
/tmp/references, dispatch concurrency, and a secrets expression; there are no compilation errors.