-
Notifications
You must be signed in to change notification settings - Fork 352
[aw] Updates available #25726
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[aw] Updates available #25726
Changes from 3 commits
bd432e7
58fc08e
200a9f3
2eae01c
File filter
Filter by extension
Conversations
Jump to
Diff view
Diff view
There are no files selected for viewing
| Original file line number | Diff line number | Diff line change |
|---|---|---|
| @@ -1,5 +1,10 @@ | ||
| { | ||
| "entries": { | ||
| "actions-ecosystem/action-add-labels@v1.1.0": { | ||
| "repo": "actions-ecosystem/action-add-labels", | ||
| "version": "v1.1.0", | ||
| "sha": "bd52874380e3909a1ac983768df6976535ece7f8" | ||
| }, | ||
|
Contributor
Author
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. 👀 Smoke test review comment #1 — The addition of
Contributor
Author
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. The new |
||
| "actions-ecosystem/action-add-labels@v1.1.3": { | ||
| "repo": "actions-ecosystem/action-add-labels", | ||
| "version": "v1.1.3", | ||
|
|
@@ -53,25 +58,25 @@ | |
| "version": "v6.0.2", | ||
| "sha": "de0fac2e4500dabe0009e67214ff5f5447ce83dd" | ||
| }, | ||
| "actions/create-github-app-token@v3": { | ||
| "actions/create-github-app-token@v3.0.0": { | ||
| "repo": "actions/create-github-app-token", | ||
| "version": "v3", | ||
| "version": "v3.0.0", | ||
| "sha": "f8d387b68d61c58ab83c6c016672934102569859" | ||
| }, | ||
| "actions/download-artifact@v8.0.1": { | ||
| "repo": "actions/download-artifact", | ||
| "version": "v8.0.1", | ||
| "sha": "3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c" | ||
| }, | ||
| "actions/github-script@v8": { | ||
| "repo": "actions/github-script", | ||
| "version": "v8", | ||
| "sha": "ed597411d8f924073f98dfc5c65a23a2325f34cd" | ||
| }, | ||
| "actions/github-script@v9": { | ||
| "repo": "actions/github-script", | ||
| "version": "v9", | ||
| "sha": "3a2844b7e9c422d3c10d287c895573f7108da1b3" | ||
| "sha": "373c709c69115d41ff229c7e5df9f8788daa9553" | ||
| }, | ||
| "actions/github-script@v9.0.0": { | ||
| "repo": "actions/github-script", | ||
| "version": "v9.0.0", | ||
| "sha": "d746ffe35508b1917358783b479e04febd2b8f71" | ||
| }, | ||
| "actions/setup-dotnet@v5.2.0": { | ||
| "repo": "actions/setup-dotnet", | ||
|
|
@@ -98,10 +103,10 @@ | |
| "version": "v6.2.0", | ||
| "sha": "a309ff8b426b58ec0e2a45f0f869d46889d02405" | ||
| }, | ||
| "actions/upload-artifact@v7": { | ||
| "actions/upload-artifact@v7.0.1": { | ||
| "repo": "actions/upload-artifact", | ||
| "version": "v7", | ||
| "sha": "bbbca2ddaa5d8feaa63e36b76fdaad77386f024f" | ||
| "version": "v7.0.1", | ||
| "sha": "043fb46d1a93c77aae656e7c1c64a875d1fc6a0a" | ||
| }, | ||
| "anchore/sbom-action@v0.24.0": { | ||
| "repo": "anchore/sbom-action", | ||
|
|
@@ -123,40 +128,40 @@ | |
| "version": "v2.0.4", | ||
| "sha": "667a34cdef165d8d2b2e98dde39547c9daac7282" | ||
| }, | ||
| "docker/build-push-action@v7": { | ||
| "docker/build-push-action@v7.1.0": { | ||
| "repo": "docker/build-push-action", | ||
| "version": "v7", | ||
| "sha": "d08e5c354a6adb9ed34480a06d141179aa583294" | ||
| "version": "v7.1.0", | ||
| "sha": "bcafcacb16a39f128d818304e6c9c0c18556b85f" | ||
| }, | ||
| "docker/login-action@v4.1.0": { | ||
| "repo": "docker/login-action", | ||
| "version": "v4.1.0", | ||
| "sha": "4907a6ddec9925e35a0a9e82d7399ccc52663121" | ||
| }, | ||
| "docker/metadata-action@v6": { | ||
| "docker/metadata-action@v6.0.0": { | ||
| "repo": "docker/metadata-action", | ||
| "version": "v6", | ||
| "version": "v6.0.0", | ||
| "sha": "030e881283bb7a6894de51c315a6bfe6a94e05cf" | ||
| }, | ||
| "docker/setup-buildx-action@v4": { | ||
| "docker/setup-buildx-action@v4.0.0": { | ||
| "repo": "docker/setup-buildx-action", | ||
| "version": "v4", | ||
| "version": "v4.0.0", | ||
| "sha": "4d04d5d9486b7bd6fa91e7baf45bbb4f8b9deedd" | ||
| }, | ||
| "erlef/setup-beam@v1.24": { | ||
| "erlef/setup-beam@v1.24.0": { | ||
| "repo": "erlef/setup-beam", | ||
| "version": "v1.24", | ||
| "sha": "3077b49d03fe1e281e5e5bc79084f079e9bf93ca" | ||
| "version": "v1.24.0", | ||
| "sha": "8d44588995e53ce789721e96227122a67826542d" | ||
| }, | ||
| "github/codeql-action/upload-sarif@v4.35.1": { | ||
| "repo": "github/codeql-action/upload-sarif", | ||
| "version": "v4.35.1", | ||
| "sha": "0e9f55954318745b37b7933c693bc093f7336125" | ||
| }, | ||
| "github/gh-aw-actions/setup@v0.67.4": { | ||
| "github/gh-aw-actions/setup@v0.68.1": { | ||
| "repo": "github/gh-aw-actions/setup", | ||
| "version": "v0.67.4", | ||
| "sha": "9d6ae06250fc0ec536a0e5f35de313b35bad7246" | ||
| "version": "v0.68.1", | ||
| "sha": "2fe53acc038ba01c3bbdc767d4b25df31ca5bdfc" | ||
| }, | ||
| "github/stale-repos@v9.0.8": { | ||
| "repo": "github/stale-repos", | ||
|
|
@@ -188,5 +193,92 @@ | |
| "version": "v8.6.0", | ||
| "sha": "9e863354e3ff62e0727d37183162c4a88873df41" | ||
| } | ||
| }, | ||
| "containers": { | ||
| "docker.io/mcp/brave-search": { | ||
| "image": "docker.io/mcp/brave-search", | ||
| "digest": "sha256:ca96b8acb27d8cf601a8faef86a084602cffa41d8cb18caa1e29ba4d16989d22", | ||
|
Contributor
Author
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. 🔍 Smoke test review comment #2 — Container image digest pinning looks great! The
Contributor
Author
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. 🤖 Copilot smoke test agent agrees — consistent digest pinning is excellent practice for supply chain security! ✅
Contributor
Author
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. 🔍 Smoke test review comment #2 — Container image digest pinning looks great! The |
||
| "pinned_image": "docker.io/mcp/brave-search@sha256:ca96b8acb27d8cf601a8faef86a084602cffa41d8cb18caa1e29ba4d16989d22" | ||
| }, | ||
| "ghcr.io/github/gh-aw-firewall/agent:0.25.18": { | ||
| "image": "ghcr.io/github/gh-aw-firewall/agent:0.25.18", | ||
| "digest": "sha256:c77e8c26bab6c39e8568d8e2f8c17015944849a8cbcdfb4bd9725d8893725ca2", | ||
| "pinned_image": "ghcr.io/github/gh-aw-firewall/agent:0.25.18@sha256:c77e8c26bab6c39e8568d8e2f8c17015944849a8cbcdfb4bd9725d8893725ca2" | ||
| }, | ||
| "ghcr.io/github/gh-aw-firewall/api-proxy:0.25.18": { | ||
| "image": "ghcr.io/github/gh-aw-firewall/api-proxy:0.25.18", | ||
| "digest": "sha256:d16a40a3ca6e989896d0cef9f31b9412bb1fcc8755bafcafb95012ae1078539b", | ||
| "pinned_image": "ghcr.io/github/gh-aw-firewall/api-proxy:0.25.18@sha256:d16a40a3ca6e989896d0cef9f31b9412bb1fcc8755bafcafb95012ae1078539b" | ||
| }, | ||
| "ghcr.io/github/gh-aw-firewall/squid:0.25.18": { | ||
| "image": "ghcr.io/github/gh-aw-firewall/squid:0.25.18", | ||
| "digest": "sha256:eb102afcfbae26ffcec016adebb74d3be7b0a5bf376ba306599cdf3effbe288e", | ||
| "pinned_image": "ghcr.io/github/gh-aw-firewall/squid:0.25.18@sha256:eb102afcfbae26ffcec016adebb74d3be7b0a5bf376ba306599cdf3effbe288e" | ||
| }, | ||
| "ghcr.io/github/gh-aw-mcpg:v0.2.17": { | ||
| "image": "ghcr.io/github/gh-aw-mcpg:v0.2.17", | ||
| "digest": "sha256:a6dec6ec535a11c565d982afa2f98589805ed0598862b9ea9d3c751fc71afae8", | ||
| "pinned_image": "ghcr.io/github/gh-aw-mcpg:v0.2.17@sha256:a6dec6ec535a11c565d982afa2f98589805ed0598862b9ea9d3c751fc71afae8" | ||
| }, | ||
| "ghcr.io/github/github-mcp-server:v0.32.0": { | ||
| "image": "ghcr.io/github/github-mcp-server:v0.32.0", | ||
| "digest": "sha256:2763823c63bcca718ce53850a1d7fcf2f501ec84028394f1b63ce7e9f4f9be28", | ||
| "pinned_image": "ghcr.io/github/github-mcp-server:v0.32.0@sha256:2763823c63bcca718ce53850a1d7fcf2f501ec84028394f1b63ce7e9f4f9be28" | ||
| }, | ||
| "ghcr.io/github/serena-mcp-server:latest": { | ||
| "image": "ghcr.io/github/serena-mcp-server:latest", | ||
| "digest": "sha256:bf343399e3725c45528f531a230f3a04521d4cdef29f9a5af6282ff0d3c393c5", | ||
| "pinned_image": "ghcr.io/github/serena-mcp-server:latest@sha256:bf343399e3725c45528f531a230f3a04521d4cdef29f9a5af6282ff0d3c393c5" | ||
| }, | ||
| "mcp/arxiv-mcp-server": { | ||
| "image": "mcp/arxiv-mcp-server", | ||
| "digest": "sha256:6dc6bba6dfed97f4ad6eb8d23a5c98ef5b7fa6184937d54b2d675801cd9dd29e", | ||
| "pinned_image": "mcp/arxiv-mcp-server@sha256:6dc6bba6dfed97f4ad6eb8d23a5c98ef5b7fa6184937d54b2d675801cd9dd29e" | ||
| }, | ||
| "mcp/ast-grep:latest": { | ||
| "image": "mcp/ast-grep:latest", | ||
| "digest": "sha256:5fc3f2e9dcf2c019e92662f608b8d89e12134ed6d91e6f5461de6efd506a1e72", | ||
| "pinned_image": "mcp/ast-grep:latest@sha256:5fc3f2e9dcf2c019e92662f608b8d89e12134ed6d91e6f5461de6efd506a1e72" | ||
| }, | ||
| "mcp/context7": { | ||
| "image": "mcp/context7", | ||
| "digest": "sha256:1174e6a29634a83b2be93ac1fefabf63265f498c02c72201fe3464e687dd8836", | ||
| "pinned_image": "mcp/context7@sha256:1174e6a29634a83b2be93ac1fefabf63265f498c02c72201fe3464e687dd8836" | ||
| }, | ||
| "mcp/markitdown": { | ||
| "image": "mcp/markitdown", | ||
| "digest": "sha256:1cef3bf502503310ed0884441874ccf6cdaac20136dc1179797fa048269dc4cb", | ||
| "pinned_image": "mcp/markitdown@sha256:1cef3bf502503310ed0884441874ccf6cdaac20136dc1179797fa048269dc4cb" | ||
| }, | ||
| "mcp/memory": { | ||
| "image": "mcp/memory", | ||
| "digest": "sha256:db0c2db07a44b6797eba7a832b1bda142ffc899588aae82c92780cbb2252407f", | ||
| "pinned_image": "mcp/memory@sha256:db0c2db07a44b6797eba7a832b1bda142ffc899588aae82c92780cbb2252407f" | ||
| }, | ||
| "mcp/notion": { | ||
| "image": "mcp/notion", | ||
| "digest": "sha256:4de8eb0de33402fcbd3740b4f4039918e4893155c7ea833c7a0c472001b88367", | ||
| "pinned_image": "mcp/notion@sha256:4de8eb0de33402fcbd3740b4f4039918e4893155c7ea833c7a0c472001b88367" | ||
| }, | ||
| "mcr.microsoft.com/playwright/mcp": { | ||
| "image": "mcr.microsoft.com/playwright/mcp", | ||
| "digest": "sha256:7b82f29c6ef83480a97f612d53ac3fd5f30a32df3fea1e06923d4204d3532bb2", | ||
| "pinned_image": "mcr.microsoft.com/playwright/mcp@sha256:7b82f29c6ef83480a97f612d53ac3fd5f30a32df3fea1e06923d4204d3532bb2" | ||
| }, | ||
| "node:lts-alpine": { | ||
| "image": "node:lts-alpine", | ||
| "digest": "sha256:01743339035a5c3c11a373cd7c83aeab6ed1457b55da6a69e014a95ac4e4700b", | ||
| "pinned_image": "node:lts-alpine@sha256:01743339035a5c3c11a373cd7c83aeab6ed1457b55da6a69e014a95ac4e4700b" | ||
| }, | ||
| "python:alpine": { | ||
| "image": "python:alpine", | ||
| "digest": "sha256:6f873e340e6786787a632c919ecfb1d2301eb33ccfbe9f0d0add16cbc0892116", | ||
| "pinned_image": "python:alpine@sha256:6f873e340e6786787a632c919ecfb1d2301eb33ccfbe9f0d0add16cbc0892116" | ||
| }, | ||
| "semgrep/semgrep:latest": { | ||
| "image": "semgrep/semgrep:latest", | ||
| "digest": "sha256:17d89ddd91a7729bbd5de09402f7f79a70204289e2a94635086e9db532a495f2", | ||
| "pinned_image": "semgrep/semgrep:latest@sha256:17d89ddd91a7729bbd5de09402f7f79a70204289e2a94635086e9db532a495f2" | ||
| } | ||
| } | ||
| } | ||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
👀 Smoke test review comment #1 — The addition of
actions-ecosystem/action-add-labels@v1.1.0alongside the existingv1.1.3entry looks intentional for backward-compat pinning. Consider consolidating to the latest version only to reduce lock file churn.