Upgrade gh-aw workflows to v0.88.5 - #8239
Conversation
Regenerate all workflow locks with the latest pre-release. Update the enclave gateway expectation. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
There was a problem hiding this comment.
Copilot review overview
🟡 Changes recommended
The maintenance workflow still uses gh-aw v0.88.4, leaving the repository-wide upgrade incomplete.
Once you've addressed the issues Copilot identified, you can request another Copilot review.
Review tier: Balanced
Findings: 1
New issues introduced by this change (1)
| Severity | Finding |
|---|---|
.github/aw/actions-lock.json — The central action lock is upgraded, but .github/workflows/agentics-maintenance.yml is still… |
What changed in this PR
Upgrades generated agentic workflows to gh-aw v0.88.5 and gh-aw-mcpg v0.4.16.
Changes:
- Recompiles workflow locks with updated action and container pins.
- Updates enclave assertions and delegation-capability isolation.
- Refreshes centralized action pins.
| File | Description |
|---|---|
scripts/ci/smoke-enclave-workflow.test.ts |
Updates mcpg compatibility assertion. |
.github/workflows/test-coverage-reporter.lock.yml |
Regenerates coverage workflow. |
.github/workflows/smoke-gvisor.lock.yml |
Regenerates gVisor smoke workflow. |
.github/workflows/smoke-gemini.lock.yml |
Regenerates Gemini smoke workflow. |
.github/workflows/smoke-enclave-issues-read.lock.yml |
Adds delegation-capability isolation. |
.github/workflows/smoke-docker-sbx.lock.yml |
Regenerates Docker sandbox workflow. |
.github/workflows/smoke-copilot.lock.yml |
Regenerates Copilot smoke workflow. |
.github/workflows/smoke-copilot-network-isolation.lock.yml |
Regenerates network-isolation workflow. |
.github/workflows/smoke-cloud-hypervisor.lock.yml |
Regenerates Cloud Hypervisor workflow. |
.github/workflows/smoke-claude.lock.yml |
Regenerates Claude smoke workflow. |
.github/workflows/refactoring-scanner.lock.yml |
Regenerates refactoring scanner workflow. |
.github/workflows/export-audit.lock.yml |
Regenerates export audit workflow. |
.github/workflows/duplicate-code-detector.lock.yml |
Regenerates duplicate-code workflow. |
.github/workflows/contribution-check.lock.yml |
Regenerates contribution-check workflow. |
.github/aw/actions-lock.json |
Updates action and mcpg pins. Moderate: .github/workflows/agentics-maintenance.yml remains generated with and pinned to v0.88.4; regenerate it with v0.88.5. |
💡 Configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
| "sha": "20cfd1bf945f4377ade1205e4dbc17946fc9a30d" | ||
| }, | ||
| "github/gh-aw-actions/setup-cli@v0.88.4": { | ||
| "github/gh-aw-actions/setup-cli@v0.88.5": { |
✅ Coverage Check PassedOverall Coverage
📁 Per-file Coverage Changes (1 files)
Coverage comparison generated by |
|
@copilot address review feedback |
Co-authored-by: lpcox <15877973+lpcox@users.noreply.github.com>
Updated the generated maintenance workflow to gh-aw v0.88.5, including all setup/setup-cli pins and installed CLI versions. Commit: |
|
✅ Copilot review passed with no inline comments. @lpcox Add the |

Summary
Validation
npm test(348 suites, 5,598 tests)