Skip to content

chore: update repo-governance actions to v0.5.0#119

Open
t3chn wants to merge 1 commit into
mainfrom
chore/repo-governance-v0.5.0
Open

chore: update repo-governance actions to v0.5.0#119
t3chn wants to merge 1 commit into
mainfrom
chore/repo-governance-v0.5.0

Conversation

@t3chn
Copy link
Copy Markdown
Contributor

@t3chn t3chn commented May 29, 2026

Updates only repo-governance action refs to the v0.5.0 commit SHA.

v0.5.0 adds strict root-level PR Intake policy validation: unknown top-level policy keys now fail fast.

Local policy compatibility was checked before updating refs. Policy semantics are unchanged.

Runtime proof requires merge because pull_request_target uses the base workflow.

Tests run:

  • bash tests/test-github-action-pinning.sh
  • bash scripts/run-deterministic-tests.sh
  • git diff --check

Why:
- Roll out the v0.5.0 PR Intake Gate release to Signum.
- v0.5.0 includes strict root-level policy key validation, and the checked policy was compatible before updating the ref.

What changed:
- Update the pr-intake-gate action ref from the v0.4.0 commit to the v0.5.0 commit SHA.
- Update the checked-in action pin fixture to match the new expected repo-governance pin.
- Leave local policy semantics unchanged.

Testing:
- bash tests/test-github-action-pinning.sh
- bash scripts/run-deterministic-tests.sh
- git diff --check

Risk:
- narrow - workflow pin and matching pin fixture only.
@github-actions github-actions Bot added the intake/pass PR intake passed label May 29, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

intake/pass PR intake passed

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant