Skip to content

Compile unified AWF enclaves through mcpg - #50920

Open
lpcox wants to merge 32 commits into
mainfrom
lpcox-compile-enclave-mcp
Open

Compile unified AWF enclaves through mcpg#50920
lpcox wants to merge 32 commits into
mainfrom
lpcox-compile-enclave-mcp

Conversation

@lpcox

@lpcox lpcox commented Aug 6, 2026

Copy link
Copy Markdown
Collaborator

Summary

  • add top-level enclaves compiler/frontmatter support aligned with the unified firewall schema
  • register only enabled enclave_run_script / enclave_run_agent tools on the synthetic awf-enclave HTTP upstream
  • launch mcpg first in bridge mode with a run identity label, per-server connect/tool timeouts, and AWF topology attachment
  • generate and mask a fresh 64-hex capability, forward it to mcpg by environment name, hand it to AWF, and exclude all enclave handoff variables from the primary agent
  • reject enclaves without AWF network isolation or alongside legacy bounded queries
  • document configuration and add script-only, agent-only, combined, disabled, timeout, handoff/redaction, validation, and startup-ordering coverage

Example

enclaves:
  enabled: true
  private-repos:
    - repo: octo-org/private-service
      sensitivity: confidential
  executors:
    script:
      enabled: true
      timeout: 45
    agent:
      enabled: true
      model: gpt-5
      timeout: 180

sandbox:
  agent:
    id: awf
    sudo: false

This produces the awf-enclave upstream at http://awf-enclave-mcp:8080/mcp, connectTimeout: 120, and toolTimeout: 210.

Dependency

This is the gh-aw compiler prerequisite for github/gh-aw-firewall#6992. The current default AWF release (v0.27.44) predates unified enclaves; firewall final removal of boundedQueries / boundedAgents must wait for this compiler PR, and enclave workflows require the release containing #6992.

The integration targets mcpg v0.4.8. Its HTTP transport connects lazily, does not cache failed connection attempts, and retries on later readiness requests, so mcpg may start before the AWF-owned enclave upstream without compiler-owned restart logic.

Validation

  • make agent-report-progress
  • go test ./pkg/parser ./pkg/workflow -count=1

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10.3 AIC · ⊞ 5.9K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9.52 AIC · ⊞ 5.9K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 13.7 AIC · ⊞ 8.3K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 12 AIC · ⊞ 8.3K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 14.6 AIC · ⊞ 8.3K ·
Comment /souschef to run again


@copilot Please triage this PR, refresh the branch if possible, and run the pr-finisher skill before handing back to maintainers.

Branch refresh is requested if GitHub can update it cleanly.

Run context: https://github.com/github/gh-aw/actions/runs/31183485569> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 11.6 AIC · ⊞ 5.9K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 22 AIC · ⊞ 8.3K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9.99 AIC · ⊞ 8.4K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 7.54 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10.2 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 8.98 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 16.4 AIC · ⌖ 6.83 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 12.3 AIC · ⌖ 5.36 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31240022087> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 17 AIC · ⌖ 5.44 AIC · ⊞ 6.1K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 17.1 AIC · ⌖ 6.55 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31243800835> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 25.5 AIC · ⌖ 6.69 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31248214015> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 19.2 AIC · ⌖ 6.73 AIC · ⊞ 6.1K ·

Comment /souschef to run again


Run context: https://github.com/github/gh-aw/actions/runs/31250442499> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10.2 AIC · ⌖ 5.36 AIC · ⊞ 6.1K ·

Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31251975204> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 16.7 AIC · ⌖ 5.39 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31255838666> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9.08 AIC · ⌖ 5.36 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31257633580> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 8.32 AIC · ⌖ 5.34 AIC · ⊞ 6.1K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 23.9 AIC · ⌖ 5.37 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31262341296> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10 AIC · ⌖ 5.39 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 11.5 AIC · ⌖ 5.07 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 11.9 AIC · ⌖ 6.64 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 13.9 AIC · ⌖ 5.41 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 8.6 AIC · ⌖ 5.15 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9 AIC · ⌖ 6.41 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31310371321> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 4.98 AIC · ⌖ 5.48 AIC · ⊞ 6.1K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 13.9 AIC · ⌖ 6.35 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 13.9 AIC · ⌖ 5.29 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 12.9 AIC · ⌖ 6.42 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 20.4 AIC · ⌖ 5.46 AIC · ⊞ 6.1K ·
Comment /souschef to run again


Requested branch update from PR Sous Chef run https://github.com/github/gh-aw/actions/runs/31336577085> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10.2 AIC · ⌖ 5.19 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Branch refresh requested by PR Sous Chef run https://github.com/github/gh-aw/actions/runs/31338952148> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 27.7 AIC · ⌖ 5.43 AIC · ⊞ 6.1K ·

Comment /souschef to run again


Requested branch update from PR Sous Chef run https://github.com/github/gh-aw/actions/runs/31339757619> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10.8 AIC · ⌖ 5.2 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31341574451> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 20.6 AIC · ⌖ 5.23 AIC · ⊞ 6.1K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 5.89 AIC · ⌖ 5.6 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31354788221> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 39.6 AIC · ⌖ 6.68 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 16.4 AIC · ⌖ 5.39 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9.85 AIC · ⌖ 7.69 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Run: https://github.com/github/gh-aw/actions/runs/31375792022> Generated by 👨‍🍳 PR Sous Chef · gpt54 · 17.8 AIC · ⌖ 5.46 AIC · ⊞ 8.5K ·

Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 6.29 AIC · ⌖ 4.23 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 7.76 AIC · ⌖ 5.55 AIC · ⊞ 8.5K ·
Comment /souschef to run again


Generated by 👨‍🍳 PR Sous Chef · gpt54 · 11.8 AIC · ⌖ 5.41 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Compile AWF-owned script and agent enclaves through mcpg with run-scoped capability handoff, timeout derivation, network validation, schemas, tests, and documentation.

Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
Copilot AI balanced review requested due to automatic review settings August 6, 2026 20:10

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot encountered an error and was unable to review this pull request. You can try again by re-requesting a review.

Note

This error may be related to your runner configuration. You can now configure runners for Copilot code review separately from Copilot cloud agent by creating a copilot-code-review.yml file with your setup steps. Read the docs for details.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Please refresh this PR branch if needed and run the pr-finisher skill before handing back to maintainers. Copilot review appears to have errored earlier, so please re-check reviewer feedback state as part of triage.

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10.3 AIC · ⊞ 5.9K ·
Comment /souschef to run again

Copilot AI commented Aug 6, 2026

Copy link
Copy Markdown
Contributor

@copilot Please refresh this PR branch if needed and run the pr-finisher skill before handing back to maintainers. Copilot review appears to have errored earlier, so please re-check reviewer feedbac...

PR finisher complete. Local validation passed (make fmt, make lint, make test-unit all green). No unresolved review threads — the copilot-pull-request-reviewer errored without leaving code review comments, so there is nothing to address. The PR is open, not draft, with no merge conflicts. CI must be re-triggered by a maintainer (close/reopen or push) before merge.

@github-actions

github-actions Bot commented Aug 6, 2026

Copy link
Copy Markdown
Contributor

Nice work on the enclave compiler integration! 🎯

This PR looks solid:

Focused scope — all changes align with unified AWF enclave compilation through mcpg
Well-tested — comprehensive test coverage in enclaves_test.go (183 lines)
Clear documentation — new docs/src/content/docs/reference/enclaves.md with configuration examples
Complete description — includes summary, working example, dependencies, and validation steps

The PR properly addresses the AWF integration prerequisite per the firewall schema alignment, and the inline agentic workflow attribution is noted. Ready for review! 🚀

Generated by ✅ Contribution Check · auto · 55.1 AIC · ⊞ 8.7K ·

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Please triage this PR and run the pr-finisher skill before handing back to maintainers.

Refresh the branch if needed.

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9.52 AIC · ⊞ 5.9K ·
Comment /souschef to run again

Copilot AI commented Aug 7, 2026

Copy link
Copy Markdown
Contributor

@copilot Please triage this PR and run the pr-finisher skill before handing back to maintainers.

Refresh the branch if needed....

PR finisher complete.

  • ✅ Reviews — No unresolved review threads. The copilot-pull-request-reviewer check ran successfully on the latest head; the earlier error was on a stale SHA. No code review comments were left.
  • ✅ Checks (local) — make fmt, make lint, make test-unit all pass locally.
  • ❓ Checks (CI) — Stale after agent push; needs human re-trigger. Three runs show action_required (CGO, CWI, Doc Build) — these are deployment-approval gates, not failures (zero failed jobs). No code-level CI failures were identified.
  • ✅ Mergeable — PR is open, not draft, no merge conflicts.

Actions taken: Local validation confirmed green. No code changes needed.
Hand-off: A maintainer should re-trigger CI (close/reopen PR or push) and approve pending deployment gates before merge.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Please triage this PR and run the pr-finisher skill before handing back to maintainers.

Refresh the branch if needed.

Generated by 👨🍳 PR Sous Chef
Comment /souschef to run again

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 13.7 AIC · ⊞ 8.3K ·
Comment /souschef to run again

Copilot AI commented Aug 7, 2026

Copy link
Copy Markdown
Contributor

@copilot Please triage this PR and run the pr-finisher skill before handing back to maintainers.

Refresh the branch if needed....

PR finisher complete (second pass, no changes needed).

  • ✅ Reviews — No unresolved review threads.
  • ✅ Checks (local) — make fmt, make lint, make test-unit all confirmed green in the prior pass; no code changes since then.
  • ❓ Checks (CI) — CGO, CWI, and Doc Build show action_required consistently across multiple SHAs — these are deployment-approval gates, not code failures. No failed jobs in any of these runs.
  • ✅ Mergeable — PR is open, not draft, no conflicts.

Hand-off: A maintainer needs to approve the pending deployment gates (CGO/CWI/Doc Build) to unblock merge.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Please triage this PR, refresh the branch if needed, and run the pr-finisher skill before handing back to maintainers.

Branch refresh was requested.

Copilot review appears to have errored earlier, so please re-check reviewer feedback state as part of triage.

Run context: https://github.com/github/gh-aw/actions/runs/31146242452

Generated by 👨🍳 PR Sous Chef
Comment /souschef to run again

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 12 AIC · ⊞ 8.3K ·
Comment /souschef to run again

Copilot AI commented Aug 7, 2026

Copy link
Copy Markdown
Contributor

@copilot Please triage this PR, refresh the branch if needed, and run the pr-finisher skill before handing back to maintainers.

Branch refresh was requested....

Branch has been refreshed (merged with main at 1b3bb88). PR finisher complete.

  • ✅ Reviews — No unresolved review threads.
  • ✅ Checks (local) — make fmt, make lint, make test-unit all green (confirmed in prior passes; no code changes since).
  • ❓ Checks (CI) — CGO, CWI, and Doc Build show action_required on the latest SHA 1b3bb88 — these are deployment-approval gates, not code failures (zero failed jobs across all runs).
  • ✅ Mergeable — PR is open, not draft, branch is up to date with main.

Hand-off: A maintainer needs to approve the pending deployment gates (CGO/CWI/Doc Build) to unblock merge.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state, confirm whether anything remains beyond the deployment-approval/CI re-trigger gates, and run the pr-finisher skill before handing this back to maintainers.

Open review context (newest first):

  • your latest handoff says no code changes are needed and only maintainer approval plus CI re-trigger/deployment gates remain; please reconfirm that state on the current head
  • no failed checks were listed in the compact candidate snapshot

Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31339757619

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 10.8 AIC · ⌖ 5.2 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state, confirm whether anything remains beyond the deployment-approval/CI re-trigger gates, and run the `pr-fini...

PR finisher complete.

  • ✅ Reviews — No actionable follow-up from the earlier copilot-pull-request-reviewer error (runner configuration issue, not a code problem).
  • ✅ Checks (local) — make fmt, make lint, and make test-unit-all all pass on HEAD c92332d; no code changes needed.
  • ✅ Branch — Up to date with main.
  • ❓ Checks (CI) — Stale after prior agent pushes; needs human re-trigger. Prior runs showed only deployment-approval gates (CGO, CWI, Doc Build at action_required), not code failures.

Actions taken: Local validation confirmed; no file changes were necessary.
Hand-off: CI must be re-triggered by a maintainer (close/reopen PR, workflow_dispatch, or a new push) before merge.
Still needed: Maintainer approval and CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state on the latest head, confirm whether anything remains beyond the approval/CI re-trigger gates, and run the pr-finisher skill before handing this back to maintainers.

Open review context (newest first):

  • your latest handoff says no code changes are needed and only maintainer approval plus CI re-trigger/deployment gates remain; please reconfirm that state on the current head
  • prior copilot review output was a runner-configuration error rather than actionable code feedback, so verify there is still no code-review follow-up left
  • no failed checks were listed in the compact candidate snapshot

Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31341574451

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 20.6 AIC · ⌖ 5.23 AIC · ⊞ 6.1K ·
Comment /souschef to run again

Copilot AI commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state on the latest head, confirm whether anything remains beyond the approval/CI re-trigger gates, and run the ...

PR finisher complete on HEAD c92332d.

  • ✅ Reviews — Only review is a copilot-pull-request-reviewer[bot] runner-configuration error (not a code issue). No unresolved review threads.
  • ✅ Checks (local) — make fmt, make lint, and make test-unit all pass on HEAD c92332d; no code changes needed.
  • ✅ Mergeable — PR is open, not draft, branch is up to date with main (head includes merge commit c92332d). mergeable_state: blocked reflects missing approval/CI gates, not conflicts.
  • ❓ Checks (CI) — Stale after prior agent pushes; unverified on the agent's HEAD until a human re-triggers. Prior runs showed only deployment-approval gates (CGO, CWI, Doc Build at action_required), not code failures.

Actions taken: Local validation confirmed; no file changes were necessary.
Hand-off: CI must be re-triggered by a maintainer (close/reopen PR, workflow_dispatch, or a new push) before merge.
Still needed: Maintainer approval and CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state on the latest head, confirm whether anything remains beyond approval/CI re-trigger gates, and run the pr-finisher skill.

  • Re-verify unresolved review threads and resolve any stale ones that already have a later author or @copilot response.
  • Re-check branch freshness / mergeability and summarize whether an update branch action is still needed.
  • Re-run the minimal local validation needed for confidence and summarize any remaining blocker clearly for maintainers.

Reference: workflow run https://github.com/github/gh-aw/actions/runs/31342923495

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9.45 AIC · ⌖ 5.36 AIC · ⊞ 6.1K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state on the latest head, confirm whether anything remains beyond approval/CI re-trigger gates, and run the `pr-...

PR finisher complete on HEAD c92332d.

  • ✅ Reviews — No unresolved review threads. The only review is a copilot-pull-request-reviewer[bot] runner-configuration error (not a code issue); no code follow-up needed.
  • ✅ Checks (local) — make fmt, make lint, and TEST_UNIT_RUN_FULL=1 make test-unit all pass on HEAD c92332d; no code changes needed.
  • ✅ Branch — Up to date with main (head is merge commit c92332d). No update-branch action needed.
  • ❓ Checks (CI) — Stale after prior agent pushes; unverified on the agent's HEAD until a human re-triggers. Prior runs showed only deployment-approval gates (CGO, CWI, Doc Build at action_required), not code failures.

Actions taken: Local validation confirmed; no file changes were necessary.
Hand-off: CI must be re-triggered by a maintainer (close/reopen PR, workflow_dispatch, or a new push) before merge.
Still needed: Maintainer approval and CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state on the latest head, confirm whether anything remains beyond approval / CI re-trigger / deployment-approval gates, and run the pr-finisher skill.

  • Your latest handoff says no code changes are needed and only maintainer approval plus CI re-trigger/deployment gates remain; please reconfirm that state on the current head.
  • Prior copilot review output was a runner-configuration error rather than actionable code feedback, so verify there is still no code-review follow-up left.
  • Re-check branch freshness / mergeability and summarize whether an update-branch action is still needed.

No failed checks were listed in the compact candidate snapshot.
Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31347850162

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 5.89 AIC · ⌖ 5.6 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state on the latest head, confirm whether anything remains beyond approval / CI re-trigger / deployment-approval...

PR finisher complete on HEAD 6500cec (branch refreshed since last pass).

  • ✅ Reviews — No unresolved review threads. The only review is a copilot-pull-request-reviewer[bot] runner-configuration error (not a code issue); no code follow-up needed.
  • ✅ Checks (local) — make fmt, make lint, and TEST_UNIT_RUN_FULL=1 make test-unit all pass on HEAD 6500cec; no code changes needed.
  • ✅ Branch — Up to date with main (head is merge commit 6500cec). No update-branch action needed.
  • ❓ Checks (CI) — Stale after prior agent pushes; unverified on the agent's HEAD until a human re-triggers. Prior runs showed only deployment-approval gates (CGO, CWI, Doc Build at action_required), not code failures.

Actions taken: Local validation confirmed on updated HEAD; no file changes were necessary.
Hand-off: CI must be re-triggered by a maintainer (close/reopen PR, workflow_dispatch, or a new push) before merge.
Still needed: Maintainer approval and CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state, confirm whether anything remains beyond the deployment-approval or CI re-trigger gates, and run the pr-finisher skill before handing this back to maintainers.

Open review context (newest first):

  • your latest handoff says no code changes are needed and only maintainer approval plus CI re-trigger or deployment gates remain; please reconfirm that state on the current head
  • no failed checks were listed in the compact candidate snapshot

Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31354788221

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 39.6 AIC · ⌖ 6.68 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state, confirm whether anything remains beyond the deployment-approval or CI re-trigger gates, and run the `pr-f...

PR finisher confirmed on HEAD 6500cec (same HEAD as previous pass — branch is still up to date with main).

  • ✅ Reviews — No unresolved review threads. The only review is a copilot-pull-request-reviewer[bot] runner-configuration error, not actionable code feedback.
  • ✅ Checks (local) — make fmt, make lint, and TEST_UNIT_RUN_FULL=1 make test-unit all pass on HEAD 6500cec; no code changes needed.
  • ✅ Branch — Up to date with main (merge commit 6500cec). No update-branch action needed.
  • ❓ Checks (CI) — Stale; unverified on the agent's HEAD until a human re-triggers. Prior runs showed only deployment-approval gates (CGO, CWI, Doc Build at action_required), not code failures.

Actions taken: Local state re-confirmed; no file changes were necessary.
Hand-off: CI must be re-triggered by a maintainer (close/reopen PR, workflow_dispatch, or a new push) before merge.
Still needed: Maintainer approval and CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state, confirm whether anything remains beyond the deployment-approval or CI re-trigger gates, and run the pr-finisher skill before handing this back to maintainers.

Open review context (newest first):

  • prior handoffs say no code changes are needed and only maintainer approval plus CI re-trigger or deployment gates remain; please reconfirm that state on the current head.
  • no failed checks were listed in the compact candidate snapshot.

Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31359323746

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 16.4 AIC · ⌖ 5.39 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please re-check the current maintainer-facing state, confirm whether anything remains beyond the deployment-approval or CI re-trigger gates, and run the `pr-f...

PR finisher confirmed on HEAD a96e7fd (branch is up to date with main — the top commit is the merge commit from the last branch refresh).

  • make agent-report-progress (fmt + lint + impacted unit tests) — all pass, no warnings or errors in the enclave-related packages.
  • ✅ No unresolved review threads.
  • ✅ Branch up to date with main.

No code changes are needed. The only remaining gates are maintainer approval and a CI re-trigger (prior runs showed only deployment-approval jobs at action_required, not code failures).

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please refresh the branch if GitHub can update it cleanly, review any outstanding maintainer-facing feedback, and run the pr-finisher skill before handing this back.

Open review context (newest first):

  • no maintainer-facing review details were fetched in this run; please inspect the latest review threads and unresolved feedback directly
  • no failed checks were listed in the compact candidate snapshot

Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31365830061

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 9.85 AIC · ⌖ 7.69 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please refresh the branch if GitHub can update it cleanly, review any outstanding maintainer-facing feedback, and run the pr-finisher skill before handing t...

PR finisher confirmed on HEAD a96e7fd — branch is still up to date with main.

  • make agent-report-progress-no-test (fmt + lint + workflow compilation) — all pass.
  • ✅ No unresolved review threads.
  • ✅ Branch up to date with main; no refresh needed.

No code changes are needed. Remaining gates: maintainer approval and a CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please refresh the branch if GitHub can update it cleanly, re-check the current maintainer-facing state, confirm whether anything remains beyond deployment-approval or CI re-trigger gates, and run the pr-finisher skill before handing this back to maintainers.

Open review context (newest first):

  • prior handoffs say no code changes are needed and only maintainer approval plus CI re-trigger or deployment gates remain; please reconfirm that state on the current head
  • no failed checks were listed in the compact candidate snapshot

Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31375792022

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 17.8 AIC · ⌖ 5.46 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please refresh the branch if GitHub can update it cleanly, re-check the current maintainer-facing state, confirm whether anything remains beyond deployment-ap...

PR finisher confirmed on HEAD a96e7fd — branch is still up to date with main.

  • make agent-report-progress-no-test (fmt + lint + workflow compilation) — all pass.
  • ✅ No unresolved review threads.
  • ✅ Branch up to date with main; no refresh needed.

No code changes are needed. Remaining gates: maintainer approval and a CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot Quick triage nudge for this PR.

Please refresh the branch if GitHub can update it cleanly, re-check the current maintainer-facing state, and run the pr-finisher skill before handing this back to maintainers.

Open review context (newest first):

  • prior handoffs say no code changes are needed and only maintainer approval plus CI re-trigger/deployment gates remain; please reconfirm that state on the current head
  • no failed checks were listed in the compact candidate snapshot

Branch refresh was requested.
Run: https://github.com/github/gh-aw/actions/runs/31378677206

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 28.3 AIC · ⌖ 6.62 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot Quick triage nudge for this PR.

Please refresh the branch if GitHub can update it cleanly, re-check the current maintainer-facing state, and run the pr-finisher skill before handing this b...

PR finisher confirmed on HEAD a96e7fd — branch is still up to date with main.

  • make agent-report-progress-no-test (fmt + lint + workflow compilation) — all pass.
  • ✅ No unresolved review threads.
  • ✅ Branch up to date with main; no refresh needed.

No code changes are needed. Remaining gates: maintainer approval and a CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot PR sous-chef triage: please refresh this branch if needed, review current PR status, and run the pr-finisher skill before handing back to maintainers. Run details: https://github.com/github/gh-aw/actions/runs/31382838939

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 6.29 AIC · ⌖ 4.23 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot PR sous-chef triage: please refresh this branch if needed, review current PR status, and run the pr-finisher skill before handing back to maintainers. Run details: https://github.com/github/g...

PR finisher confirmed on HEAD cfbdbf3 (branch was refreshed against main).

  • make agent-report-progress-no-test (fmt + lint + workflow compilation) — all pass.
  • ✅ No unresolved review threads.
  • ✅ Branch up to date with main.

No code changes are needed. Remaining gates: maintainer approval and a CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot PR sous-chef triage: please refresh the current maintainer-facing state on the latest head, resolve any addressed unresolved review threads, refresh the branch if GitHub can update it cleanly, and run the pr-finisher skill before handing this back to maintainers.

No failed checks were listed in the compact candidate snapshot.
Run details: https://github.com/github/gh-aw/actions/runs/31384398611

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 7.76 AIC · ⌖ 5.55 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot PR sous-chef triage: please refresh the current maintainer-facing state on the latest head, resolve any addressed unresolved review threads, refresh the branch if GitHub can update it cleanly...

PR finisher confirmed on HEAD cfbdbf3 — branch is still up to date with main.

  • make agent-report-progress-no-test (fmt + lint + workflow compilation) — all pass (284 workflows compiled, 284 succeeded).
  • ✅ No unresolved review threads.
  • ✅ Branch up to date with main; no refresh needed.

No code changes are needed. Remaining gates: maintainer approval and a CI re-trigger.

@gh-aw-bot

Copy link
Copy Markdown
Collaborator

@copilot PR sous-chef triage: please refresh the current maintainer-facing state on the latest head, re-check reviewer feedback state, refresh the branch if GitHub can update it cleanly, and run the pr-finisher skill before handing this back to maintainers.

The earlier copilot review errored and later passes reported no unresolved review threads; please confirm the maintainer-facing state on the current head.
No failed checks were listed in the compact candidate snapshot.
Branch refresh was requested.
Run details: https://github.com/github/gh-aw/actions/runs/31388253285

Generated by 👨‍🍳 PR Sous Chef · gpt54 · 11.8 AIC · ⌖ 5.41 AIC · ⊞ 8.5K ·
Comment /souschef to run again

Copilot AI commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

@copilot PR sous-chef triage: please refresh the current maintainer-facing state on the latest head, re-check reviewer feedback state, refresh the branch if GitHub can update it cleanly, and run the `...

PR finisher confirmed on HEAD 4ea396e — branch has been refreshed against main (new merge commit).

  • make agent-report-progress-no-test (fmt + lint + workflow compilation) — all pass (284 workflows compiled, 284 succeeded).
  • ✅ No unresolved review threads.
  • ✅ Branch is now up to date with main.

No code changes needed. Remaining gates: maintainer approval and a CI re-trigger.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants