Skip to content

fix: manual-only CI/releases and safer Docker inventory - #17

Merged
veithly merged 4 commits into
devfrom
fix/manual-workflows-and-issue-triage
Sep 29, 2026
Merged

veithly merged 4 commits into
devfrom
fix/manual-workflows-and-issue-triage

Conversation

@veithly

@veithly veithly commented Sep 29, 2026 •

Copy link
Copy Markdown
Owner

Summary

  • CI and Release are workflow_dispatch-only. PR Target remains automatic and metadata-only. All existing branch-protection requirements are preserved.
  • Two small status-reporting jobs translate actual manual CI job results into the existing required commit statuses for the exact repository/SHA/run/attempt. Build/test jobs remain read-only. Failed, skipped, missing, duplicate, incomplete, cancelled or superseded evidence cannot produce a false success; every status links to its real run.
  • Release must run from main, defaults to an unpublished draft, and publishes only with explicit publish=true. The latest manual CI run for the exact tag SHA must have succeeded with all required jobs. Signing, corresponding-source and immutable-tag checks remain.
  • Docker plugin 1.5.0 adds running/exited/full-ID inventories and JSON Lines for agents, preserves old actions and confirmations, and puts container operands after --.
  • All three README languages, generated Skill references, contribution/release instructions and concrete PR/issue remediation plans are updated.

Completed local verification

  • Frontend: 52 test files / 249 tests passed; production build and documentation-demo TypeScript check passed.
  • Rust: cargo check, 420 workspace tests passed, 16 external-fixture tests intentionally ignored, strict all-targets Clippy and formatting passed.
  • Plugin: 23 tests included in workspace results; all 12 generated references agree across three Skill roots.
  • Workflow/status gate: 19 Node regression tests passed; release helpers: 6 Python tests passed.
  • Release metadata and whitespace checks passed. Application version remains 1.1.0.

GitHub verification

The first explicitly dispatched full CI passed on 443f0d8: https://github.com/veithly/vibeshell/actions/runs/36549655515.
A fresh full manual run verifies the status-reporting fix on the current head 0af85c2: https://github.com/veithly/vibeshell/actions/runs/36551625273. Its initializer has successfully made all five required contexts visible to the PR. Merge is still gated on all final results, not on the previous commit's success.

GitHub's workflow event restriction is documented at https://docs.github.com/en/pull-requests/how-tos/merge-and-close-pull-requests/troubleshooting-required-status-checks#checks-from-some-workflow-jobs-are-not-evaluated.

Scope

Refs #9 and #12, does not close either. Inventory groundwork is not an independent Docker session; proxy support is a documented design, not an implemented feature. #10/#11 remain open with changes requested. No version bump, new tag, release publication, installed-app replacement or user-session termination.

Includes the reviewed main ancestry so the later dev-to-main promotion is up to date. No administrator merge override or removal of required checks is authorized by this change.

@veithly

veithly commented Sep 29, 2026

Copy link
Copy Markdown
Owner Author

Local verification is now complete: cargo check --workspace --locked, cargo test --workspace --locked (420 passed; 16 fixture-dependent tests intentionally ignored), strict workspace/all-targets Clippy, cargo fmt, frontend 249 tests and production build all passed. Generated references for all 12 plugins agree across the three Skill roots. The full GitHub CI run was explicitly dispatched for head 443f0d8: https://github.com/veithly/vibeshell/actions/runs/36549655515. Merge remains gated on that run; no Release workflow was dispatched.

@veithly

veithly commented Sep 29, 2026

Copy link
Copy Markdown
Owner Author

Integration testing found an important GitHub constraint: checks from workflow_dispatch jobs do not directly satisfy required PR checks (GitHub documentation: https://docs.github.com/en/pull-requests/how-tos/merge-and-close-pull-requests/troubleshooting-required-status-checks#checks-from-some-workflow-jobs-are-not-evaluated).

The follow-up commit adds two small jobs inside the manually dispatched CI: initialize the five existing commit-status contexts as pending, then publish each actual job result from GitHub's API for the exact repository, SHA, run and attempt. Only these two jobs have statuses:write; compilation/test jobs remain read-only. Failed, skipped, missing, duplicate or incomplete job evidence cannot produce a successful context. Superseded and cancelled runs do not publish stale successes. Every status links to the real run.

All 19 local Node regression tests passed, including failure/cancellation/supersession cases. No protection requirements were removed, no checks were manually fabricated and no administrator merge override was used. A fresh full manual CI run will validate both the code and the PR-status reporting before merge.

@veithly
veithly merged commit 6525d83 into dev Sep 29, 2026
14 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant