Skip to content

ci: pin the two shared-workflow refs to the current reusable SHA - #11

Merged
forkwright merged 2 commits into
mainfrom
chore/pin-shared-workflows
Aug 19, 2026
Merged

ci: pin the two shared-workflow refs to the current reusable SHA#11
forkwright merged 2 commits into
mainfrom
chore/pin-shared-workflows

Conversation

@forkwright

Copy link
Copy Markdown
Owner

mneme's two shared-workflow references floated at @main — the only two SHELL/unpinned-action findings on main, which means main cannot pass its own widened docs-phase lint (kanon#3515's thread measured this). Pin both to d74efb1d2d87 (current .github main, which also carries the 90m full-gate default and the release-please Bot-author waiver fix). The tag/dependabot mechanism that keeps pins current is #3515's.

forkwright added 2 commits August 19, 2026 09:12
Empty commit so kanon gate --stamp has somewhere to land its trailer —
the gate refuses to amend a HEAD that is already the pushed upstream tip.
The trailer binds to the TREE, which an empty commit does not change, so
the attestation still covers exactly the content that was gated.

Gate-Passed: kanon 0.12.0 +stages:fmt,check,clippy,nextest,lint sha:7409e24f6d0f04fe0b5b73cfa9c309257fa8fa6d
@forkwright
forkwright merged commit e52869c into main Aug 19, 2026
1 check passed
@forkwright
forkwright deleted the chore/pin-shared-workflows branch August 19, 2026 15:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant