Skip to content

ci: update checkout and reconcile pending runtime documentation - #58

Merged
BunsDev merged 3 commits into
mainfrom
dependabot/github_actions/actions/checkout-7
Oct 3, 2026
Merged

BunsDev merged 3 commits into
mainfrom
dependabot/github_actions/actions/checkout-7

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 24, 2026 •

Copy link
Copy Markdown
Contributor

The documentation workflows still use checkout v4, and the two newer release-gate jobs also retain setup-node v4. Update all five checkout calls to v7 and align those two setup-node calls with the existing v7 baseline. Keep the current triggers, permissions, complete-history browser checkout, and production concurrency policy.

Reconcile the runtime documentation already present in this branch against pinned Coven source eb3273e19670d2ab5bf1374783d96c11a50b0be2:

  • Preserve the bounded, read-only Ward audit census, including its row and decoding limits; add its owning source file to freshness monitoring.
  • Explain ordinary-chat context refusal separately from session-policy admission and preserve the stronger existing refusal/no-retry guidance. Complete the opaque build-identity explanation.
  • Add optional health sessionPolicyContracts schema/examples with owner-local IPC, TCP, absence and refusal-only semantics; regenerate OpenAPI.
  • Preserve optional automation variant negotiation and the precise current owner-local diagnostic allowlist.
  • Use a verified native CLI palette example. Retain the fuller existing CLI theme and plain-session formatting references without duplicating them.

Keep the reviewed source pin and help-capture provenance. The branch's old 24e4c1f pin changes only two prepublish test scripts after eb3273e; the relevant contract sources are identical.

The checkout v7 documentation describes its Node 24 action runtime and safer fork checkout defaults. These workflows use pull_request, push, schedule or manual dispatch on GitHub-hosted runners; they do not opt into unsafe fork checkout. Application verification remains on Node 22.

Source evidence: Ward census, API contract, and health authority tests.

Verification: pnpm verify, actionlint, git diff --check, and the expanded upstream source-freshness check passed before commit. The integration commit reproduces the exact verified candidate tree. Browser certification covered 14 pages, 13 journey links, five mobile views and five navigation widths. A separate Chromium check expanded the health response and its capabilities popover, confirming the optional string array and IPC/TCP/refusal-only description. OpenAPI regeneration leaves tracked generated pages unchanged.

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Aug 24, 2026
@vercel

vercel Bot commented Aug 24, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
coven-docs Ready Ready Preview Oct 3, 2026 3:40pm UTC

Request Review

BunsDev commented Sep 16, 2026

Copy link
Copy Markdown
Member

@dependabot rebase

Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 7.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@v4...v7)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: '7'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: Val Alexander <val@opencoven.ai>
@BunsDev BunsDev changed the title build(deps): bump actions/checkout from 4 to 7 ci: update checkout and reconcile pending runtime documentation Oct 3, 2026
@BunsDev
BunsDev requested a balanced review from Copilot October 3, 2026 15:39

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟢 Approval recommended

The changes match the pinned upstream contracts and preserve the documented workflow behavior.

Review effort: Balanced
Findings: None

What changed in this PR

Updates documentation CI actions and aligns runtime documentation with the pinned Coven source contract.

Changes:

  • Upgrades checkout and setup-node actions to v7.
  • Documents runtime admission, automation, Ward census, and terminal-theme behavior.
  • Extends health OpenAPI metadata and freshness monitoring.
File Description
openapi/​coven.daemon.v1.yaml Adds optional session-policy contracts.
docs/​source-lock.json Watches the Ward census source.
content/​docs/​reference/​automations.mdx Documents variant negotiation.
content/​docs/​reference/​api.mdx Clarifies admission and build identity.
content/​docs/​cli/​repo-workflow.mdx Documents Ward audit census.
content/​docs/​cli/​interactive.mdx Adds terminal palette guidance.
.github/​workflows/​docs.yml Upgrades CI actions.
.github/​workflows/​docs-source-drift.yml Upgrades checkout.
.github/​workflows/​docs-live.yml Upgrades checkout.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@BunsDev
BunsDev merged commit c0d3314 into main Oct 3, 2026
10 checks passed
@dependabot
dependabot Bot deleted the dependabot/github_actions/actions/checkout-7 branch October 3, 2026 15:45

This branch was successfully deployed

1 active deployment
Preview — 9acec3b9 Deployed Oct 3, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants