| Age | Commit message (Collapse) | Author |
|
VD tracker project renamed to NOS (2026-07) - PR titles and commit headlines
using the new NOS- key must stop being flagged invalid-task-id; legacy VD-
keys stay accepted, and CodeRabbit now resolves NOS alongside VD. Fleet
replication of canary vyos/vyos-1x#5379, whose adversarial review tightened
the regexes to ASCII [0-9] + literal-space separators.
🤖 Generated by [robots](https://vyos.io)
|
|
Replaces the standalone legacy workflow copy with a thin caller of
vyos/.github codeql-analysis.yml. Also fixes the dead push/pull_request
triggers, which referenced the non-existent 'master' branch (only the
weekly cron ever ran); triggers now target 'rolling'.
SARIF category changes from '/language:python' to the derived caller
category; obsolete analyses under the old category are deleted after
the first green run (T9082 cutover procedure).
🤖 Generated by [robots](https://vyos.io)
|
|
ci: T9047: skip CodeQL on mirror twins (Code Security not enabled on private org)
|
|
org)
|
|
T8995: update pyjwt and python-multipart for security advisories
|
|
|
|
(#59)
|
|
|
|
|
|
T8885: update packages for security advisories (redo)
|
|
This was reverted than reapplied to force consistency after branch
migration.
|
|
Collective update for:
https://github.com/vyos/vyos-http-api-tools/pull/34
https://github.com/vyos/vyos-http-api-tools/pull/41
https://github.com/vyos/vyos-http-api-tools/pull/43
This was reverted than reapplied to force consistency after branch
migration.
|
|
T8885: revert update to resubmit for forced mirroring
|
|
This reverts commit 8bdb99c6cf6a7d41134c68a9ce713f2518f3e440.
|
|
This reverts commit 312138d046d33b7a0a6050e0b7e12d822028af40.
|
|
Mergify ignore_conflicts:true already creates the backport workspace PR +
resolves toward theirs + applies backport-conflict for path-drift conflicts
(verified by canary VyOS-Networks/ipaddrcheck#26/#27). force_workspace's
'No backport have been created' trigger never fires under that config.
T8943 / IS-510.
|
|
Source-side wrapper (mirrored to the VyOS-Networks twin) for the public
vyos/.github force_workspace reusable. Inert on this public source (owner
guard); active on the mirror. force_workspace_enabled per-consumer (default false).
🤖 Generated by [robots](https://vyos.io)
|
|
T8943: ci: add lts-name-check advisory caller
|
|
Adds the source-side LTS-name advisory caller (mirror-pipeline). Non-blocking;
posts a generic advisory if a PR title/body references a release-train branch name.
🤖 Generated by [robots](https://vyos.io)
|
|
|
|
Mirror Pipeline Rollout 2 Task 6. Uniform canonical wrapper:
trigger branches [rolling, production], permissions: contents: read,
drop redundant wrapper-level MIRROR_ENABLED guard (now central).
🤖 Generated by [robots](https://vyos.io)
|
|
Tracking: T8943
|
|
Rewrites uses: pins to the three HIGH-fanout producers (vyos/.github,
vyos/vyos-cla-signatures, VyOS-Networks/vyos-reusable-workflows) from their
old default branch to the new production compat branch staged in Task 1.
No functional change; pin-ref rewrite only.
Tracking: T8943
|
|
(#47)
Replaces PAT-based explicit secrets with uniform App-ready stub using
secrets: inherit and vars.MIRROR_ENABLED opt-out guard.
Plan: ~/.claude/plans/2026-05-26-mirror-rollout-1b-revised.md Task 5
🤖 Generated by [robots](https://vyos.io)
|
|
T8885: update packages for advisories
|
|
ci(mergify): upgrade configuration to current format
|
|
coderabbit: T8851: add .coderabbit.yaml for central-config inheritance
|
|
|
|
|
|
Collective update for:
https://github.com/vyos/vyos-http-api-tools/pull/34
https://github.com/vyos/vyos-http-api-tools/pull/41
https://github.com/vyos/vyos-http-api-tools/pull/43
|
|
|
|
T8852: migrate .github/mergify.yml to extends: mergify
|
|
|
|
general: T8595: add AGENTS.md
|
|
|
|
T8463: Update GitHub actions to latest versions
|
|
|
|
T8218: removed unqueue from mergify yaml as it is not supported
|
|
|
|
|
|
T8531: add Mergify config with commands restrictions
|
|
T8530: T8407: update changelog
|
|
|
|
|
|
T8530: Update python-multipart for security advisory
|
|
|
|
T8218: Updated workflows for pullrequest_target policy change
|
|
|
|
build(deps): bump pyjwt from 2.10.1 to 2.12.0
|
|
Bumps [pyjwt](https://github.com/jpadilla/pyjwt) from 2.10.1 to 2.12.0.
- [Release notes](https://github.com/jpadilla/pyjwt/releases)
- [Changelog](https://github.com/jpadilla/pyjwt/blob/master/CHANGELOG.rst)
- [Commits](https://github.com/jpadilla/pyjwt/compare/2.10.1...2.12.0)
---
updated-dependencies:
- dependency-name: pyjwt
dependency-version: 2.12.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
|