Skip to content

release: bind Ares to GhostMCP 0.2.1 - #16

Merged
jason-allen-oneal merged 2 commits into
mainfrom
agent/ares-v1.1.1-release-trust
Aug 31, 2026
Merged

release: bind Ares to GhostMCP 0.2.1#16
jason-allen-oneal merged 2 commits into
mainfrom
agent/ares-v1.1.1-release-trust

Conversation

@jason-allen-oneal

@jason-allen-oneal jason-allen-oneal commented Aug 31, 2026

Copy link
Copy Markdown
Member

Summary

  • advance the vendored GhostMCP commit and the ghostmcp extra to the merged 0.2.1 release identity
  • require a release-tag commit to be reachable from protected main
  • pin every external action in the release workflow to an immutable commit
  • verify tag identity and protected-main ancestry in a contents-read prerequisite before any write/OIDC-capable release job starts
  • keep PyPI publication behind the existing repository variable and reviewed pypi environment
  • avoid a pytest module-name collision between the Ares and vendored GhostMCP release tests

Release boundary

GhostMCP 0.2.1 is merged and green on BlueDot-IT/GhostMCP main, but its tag and PyPI publication remain intentionally pending Trusted Publisher configuration. This PR does not create a tag, enable PYPI_PUBLISH_ENABLED, or publish either package.

Verification

  • exact head: ccfebf0f7500e6c7a409dac1c19bd6e906e10355
  • complete isolated suite: 495 passed, 1 skipped, 11 subtests passed
  • focused release/GhostMCP suite: 17 passed
  • critical Ruff selectors and git diff --check: passed
  • wheel and sdist build: passed
  • twine check dist/*: passed
  • wheel contains the Evaluation Lab fixture and expected metadata/entry points

All Ares tests used a temporary APP_HOME; live ~/.ares state was not used.

@jason-allen-oneal
jason-allen-oneal force-pushed the agent/ares-v1.1.1-release-trust branch from 19a86f3 to ccfebf0 Compare August 31, 2026 01:51
@jason-allen-oneal
jason-allen-oneal merged commit e484473 into main Aug 31, 2026
8 checks passed
@jason-allen-oneal
jason-allen-oneal deleted the agent/ares-v1.1.1-release-trust branch August 31, 2026 01:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants