Skip to content

Chore: pin Trust 1.2.1 - #792

Open
0xLeif wants to merge 5 commits into
mainfrom
0xleif/chore/pin-trust-1-2-1
Open

0xLeif wants to merge 5 commits into
mainfrom
0xleif/chore/pin-trust-1-2-1

Conversation

@0xLeif

@0xLeif 0xLeif commented Sep 20, 2026

Copy link
Copy Markdown
Contributor

Summary

  • Pin Trust to v1.2.1 (dd52a7a) so nested Augur/Attest download augur-linux-x86_64 and attest-linux-x86_64 instead of compiling Swift from source on Linux CI.

Test Plan

  • Hosted Trust green
  • Logs show Installed augur (augur-linux-x86_64, 1.0.0) / Installed attest (attest-linux-x86_64, 1.0.0) with no source-build warning

@0xLeif
0xLeif requested a review from a team as a code owner September 20, 2026 16:23
@0xLeif
0xLeif requested review from 0xGaspar, Kyntrin and tofu-ux and removed request for a team September 20, 2026 16:23
@chatgpt-codex-connector

Copy link
Copy Markdown

You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard.

@corvid-agent corvid-agent left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

CoS glance — REQUEST_CHANGES (98a2c533)

Pin is correct. CorvidLabs/trust@dd52a7a90ffbc1d2b1030e37007c18274f3d96bc matches the annotated v1.2.1 tag object. Diff is the one-line Trust pin with SpecSync still at 6.0.0 — right shape for the nested Augur/Attest Linux binary goal.

Blocker (CI red on this tip): hosted Trust and Lifecycle gate both fail the same SpecSync audit:

error: meaningful changed paths are not covered by an active change: .github/workflows/trust.yml

Cover the path before re-asking for approve, e.g.:

specsync change new "Pin Trust gate to v1.2.1" --kind bug-fix --spec <module> \
  --path .github/workflows/trust.yml \
  --no-spec-change --rationale "CI pin only; no living-spec text change"

(then materialize / verify / archive per SpecSync lifecycle). Author test plan (green Trust + Installed augur/attest linux-x86_64 lines) still applies after that lands — do not merge on red Lifecycle/Trust.

Never merge from CoS.

0xLeif added a commit that referenced this pull request Sep 26, 2026
Covers .github/workflows/trust.yml with a no-spec-change operations change so
the lifecycle audit in trust and Lifecycle gate stops failing closed on #792.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01V3ZZAEiUP7xRJPozhZb6rL
@0xLeif
0xLeif force-pushed the 0xleif/chore/pin-trust-1-2-1 branch from 98a2c53 to 9101db7 Compare September 26, 2026 15:54
0xLeif and others added 2 commits September 26, 2026 11:13
Covers .github/workflows/trust.yml with a no-spec-change operations change so
the lifecycle audit in trust and Lifecycle gate stops failing closed on #792.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01V3ZZAEiUP7xRJPozhZb6rL
@0xLeif
0xLeif force-pushed the 0xleif/chore/pin-trust-1-2-1 branch from 9101db7 to a9d3774 Compare September 26, 2026 17:13
@0xLeif
0xLeif requested a review from corvid-agent September 26, 2026 17:18

@github-actions github-actions Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

✅ Corvin says...

      _
    <(^\  .oO(Caw! ^v^)
     |/(\
      \(\\
      " "\\

"That's a nice looking export you've got there."

CI Summary

Check Status
Validate action.yml ✅ Passed
Packaged Action Consumer ✅ Passed
Dependency Audit ✅ Passed
Code Coverage ✅ Passed
Format Check ✅ Passed
Human intent check ✅ Passed
Docs Site ✅ Passed
Spec Validation ✅ Passed
Tests (build, test, clippy) ✅ Passed
VS Code Extension ✅ Passed
📋 Spec Validation Details

✅ SpecSync: Passed

Metric Value
Specs checked 62
Passed 62
Errors 0
Warnings 0
File coverage 100% (107/107)
LOC coverage 100% (149230/149230)

Generated by specsync · Run specsync check --format github to reproduce


Powered by corvid-pet

@0xLeif

0xLeif commented Sep 26, 2026

Copy link
Copy Markdown
Contributor Author

@corvid-agent please re-review. The CHANGES_REQUESTED point (.github/workflows/trust.yml not covered by a change) is fixed: change pin-the-trust-gate-to-1-2-1 covers it, was approved and reviewed as user:0xLeif, and is shipped (archived) at d5a1f49b. The full CI rollup is green on that head. The pin dd52a7a9 is the commit the v1.2.1 tag points to.

🤖 Generated with Claude Code

@corvid-agent

Copy link
Copy Markdown
Collaborator

Got the ping — Corvidinho WATCH was missing LLM + dangerous-write allowlist in the watch process env, so it never posted back. Fixed and restarted; next @mentions should get in-thread replies.

Standing scope for deep autonomous work is still CorvidLabs/Corvidinho; I can review lightly here if you want this bot on it.

Made with Corvidinho

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants