Repository navigation
chore(deps): update OmniNode-ai/omnibase_core/.github/workflows/occ-preflight.yml requirement to de01ec0964a2e666d739835b02957ae0f06d6a25 - #2522
Merged
Merged
Conversation
…reflight.yml requirement to de01ec0964a2e666d739835b02957ae0f06d6a25 Updates the requirements on [OmniNode-ai/omnibase_core/.github/workflows/occ-preflight.yml](https://github.com/omninode-ai/omnibase_core) to permit the latest version. - [Release notes](https://github.com/omninode-ai/omnibase_core/releases) - [Changelog](https://github.com/OmniNode-ai/omnibase_core/blob/dev/CHANGELOG.md) - [Commits](https://github.com/omninode-ai/omnibase_core/commits/de01ec0964a2e666d739835b02957ae0f06d6a25) --- updated-dependencies: - dependency-name: OmniNode-ai/omnibase_core/.github/workflows/occ-preflight.yml dependency-version: de01ec0964a2e666d739835b02957ae0f06d6a25 dependency-type: direct:production ... Signed-off-by: dependabot[bot] <support@github.com>
Contributor
|
| Verdict | Meaning | Blocks merge? |
|---|---|---|
passed |
No critical findings | No |
blocked |
CRITICAL findings found | Yes |
degraded |
All models unavailable (infra) | No (pilot) |
Powered by omniintelligence.review_pairing.cli_review — node-based adversarial review via HandlerLlmCliSubprocess (OMN-8468/OMN-8524)
jonahgabriel
deleted the
dependabot/github_actions/OmniNode-ai/omnibase_core/dot-github/workflows/occ-preflight.yml-de01ec0964a2e666d739835b02957ae0f06d6a25
branch
July 28, 2026 06:20
jonahgabriel
added a commit
that referenced
this pull request
Jul 30, 2026
… PR author (#2574) OMN-15496 (#2569, merged 2026-07-30T18:14:35Z) made CI Summary assert 17 cross-workflow contexts fail-closed. One of them, "gate / CodeRabbit Thread Check", is structurally absent on Dependabot PRs: cr-thread-gate-caller.yml skips the caller job when github.actor == dependabot[bot], and because the context is the caller-job/reusable-job form, the inner job never materialises so NO check-run is created. Absent burns the 90 min poll deadline and then fails closed against the SOLE required context on infra dev. The OMN-15496 seed measured this context 16/16 present over #2546-#2567 -- a window containing no Dependabot PR, which is how a 16/16 context can still be absent in production. Fixed consumer-side via a declared ACTOR_CONDITIONAL_CONTEXTS registry, not by removing the producer skip: OMN-10276 took the producer route on omnimemory, but omnimemory calls a LOCAL reusable and passes no secrets, whereas this caller invokes omniclaude reusable with secrets: CROSS_REPO_PAT. Dependabot pull_request runs do not receive regular repo secrets, so dropping the skip here risks trading an absent-wedge for a red-wedge. This is an applicability rule, not a bypass: the context stays fail-closed for every author not named in the registry, and a missing --pr-author drops nothing. RED-before/GREEN-after on the real #2522 payload (98 unedited check-run rows): pre-change gate -> PENDING (deadline FAILURE) naming the CR context; post-change with dependabot[bot] -> SUCCESS; post-change with jonahgabriel -> still PENDING. Replaying the whole Dependabot batch #2515-#2522 at merge time: 5/8 blocked before, 2/8 after, and both survivors are genuine URL Authority Gate reds that are correctly preserved -- zero residual blocks attributable to the CR context. Bound in ci.yml in the same change (--pr-author), pinned by a test. Co-authored-by: jonahgabriel <jonahgabriel@users.noreply.github.com>
github-actions Bot
pushed a commit
that referenced
this pull request
Aug 29, 2026
Operator ruling 2026-08-29: "remove completely." CodeRabbit is removed entirely, not demoted to advisory. - delete .github/workflows/cr-thread-gate.yml and cr-thread-gate-caller.yml - drop "gate / CodeRabbit Thread Check" from EXPECTED_EXTERNAL_CONTEXTS (scripts/ci/ci_summary_gate.py). infra dev requires exactly ["CI Summary"], so this umbrella WAS the enforcement surface here -- there was no branch protection entry to remove. - ACTOR_CONDITIONAL_CONTEXTS is now empty by construction: its only entry was this gate (OMN-15532). The MECHANISM is retained, and so are its tests -- re-anchored onto a synthetic registry entry over the same real Dependabot #2522 payload with one asserted context deleted to stand in for the absent case. AC1/AC2/AC3 keep their meaning; AC3 now falsifies against the shipped empty registry. A test that only asserted "the registry is empty" would let the mechanism rot until the next actor-scoped producer wedged a lane. - drop the OMN-15815 concurrency-group property test, which existed solely for cr-thread-gate-caller.yml; leave a note describing the template shape that should bring it back. - refresh prose in ci.yml, call-receipt-gate.yml, auto-merge.yml and the required-context probe that cited the deleted workflow or claimed the context is live on core/market/claude dev (it is not, as of today). Historical provenance comments in unrelated tests/docs (CodeRabbit findings that produced a regression guard) are deliberately left intact. Local: uv run pytest tests/ci/test_ci_summary_gate.py -q -> 84 passed; tests/ci/test_ci_workflow_resilience.py + test_workflow_uses_refs_resolve.py + tests/unit/scripts/test_omninode_ci_required_context_probe.py -> 74 passed; ruff format/check clean; mypy --strict clean on ci_summary_gate.py. Ref: OMN-16933
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updates the requirements on OmniNode-ai/omnibase_core/.github/workflows/occ-preflight.yml to permit the latest version.
Changelog
Sourced from OmniNode-ai/omnibase_core/.github/workflows/occ-preflight.yml's changelog.
... (truncated)
Commits
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)