Ben Buttigieg
5760061316
Add community bundle submission automation ( #3553 )
...
* Add community bundle submission automation
Add the discovery-only community bundle catalog, online and offline catalog loading, and a restricted agentic workflow for validating bundle submissions and opening draft catalog PRs.
Assisted-by: GitHub Copilot (model: GPT-5.6 Sol, autonomous)
Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com >
Copilot-Session: fbe794bc-667a-4c9e-b48b-825067debc6d
* Address community bundle review feedback
Ensure explicit install-allowed catalogs take precedence over built-in discovery, tighten component installability validation, and use issue-linked community branches.
Assisted-by: GitHub Copilot (model: GPT-5.6 Sol, autonomous)
Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com >
Copilot-Session: fbe794bc-667a-4c9e-b48b-825067debc6d
* Address follow-up bundle review feedback
Make offline catalog coverage content-agnostic and require autonomous catalog commits to include the assisted-by trailer.
Assisted-by: GitHub Copilot (model: GPT-5.6 Sol, autonomous)
Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com >
Copilot-Session: fbe794bc-667a-4c9e-b48b-825067debc6d
* Harden bundle catalog table rendering
Require single-line escaped Markdown table values for untrusted submission metadata. The needs-info label used by validation is now present in the repository.
Assisted-by: GitHub Copilot (model: GPT-5.6 Sol, autonomous)
Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com >
Copilot-Session: fbe794bc-667a-4c9e-b48b-825067debc6d
* Clear stale bundle validation labels
Allow the submission workflow to remove prior outcome labels before applying the current validation state.
Assisted-by: GitHub Copilot (model: GPT-5.6 Sol, autonomous)
Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com >
Copilot-Session: fbe794bc-667a-4c9e-b48b-825067debc6d
2026-07-21 18:28:40 +01:00
Pascal THUET
e5df517ddc
ci: pin actions to commit SHAs and add shellcheck ( #3126 )
...
* ci: pin actions to commit SHAs and add shellcheck
Pin actions/github-script in catalog-assign.yml to a full commit SHA; all
other workflows were already pinned. Add a repo-wide regression test that
every workflow `uses:` ref is pinned to a 40-char commit SHA.
Add a shellcheck job to lint.yml (--severity=error over scripts/bash/*.sh)
and document the local command in CONTRIBUTING.md.
* ci: use repo-standard actions/checkout v7.0.0 in shellcheck job
* ci: shellcheck all tracked shell scripts
Assisted-by: Codex (model: GPT-5, autonomous)
* ci: address workflow hygiene review feedback
Assisted-by: Codex (model: GPT-5, autonomous)
2026-06-24 15:08:16 -05:00