Upgrade gh-aw to v0.85.0 pre-release and recompile workflows - #6957
Conversation
- Upgraded gh-aw extension from v0.84.3 to v0.85.0 - Updated gh-aw-actions/setup-cli and gh-aw-actions/setup to v0.85.0 - Recompiled all workflow lock files - Updated actions-lock.json Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
✅ Coverage Check PassedOverall Coverage
📁 Per-file Coverage Changes (1 files)
Coverage comparison generated by |
There was a problem hiding this comment.
Pull request overview
Upgrades gh-aw and its setup actions to v0.85.0, then refreshes generated workflows to adopt the new compiler behavior.
Changes:
- Updates pinned gh-aw actions and compiler metadata.
- Recompiles workflows with new safety, reporting, and output-status handling.
- Adds the new maintainer guidance resource.
Show a summary per file
| File | Description |
|---|---|
.github/aw/actions-lock.json |
Pins v0.85.0 setup actions. |
.github/skills/agentic-workflows/SKILL.md |
Adds maintainer guidance. |
.github/workflows/test-hard-cap-ai-credits.lock.yml |
Recompiled with v0.85.0. |
.github/workflows/smoke-gemini.lock.yml |
Recompiled Gemini smoke workflow. |
.github/workflows/smoke-bounded-queries.lock.yml |
Recompiled bounded-query workflow. |
.github/workflows/smoke-bounded-queries-sbx.lock.yml |
Recompiled sbx variant. |
.github/workflows/smoke-bounded-queries-gvisor.lock.yml |
Recompiled gVisor variant. |
.github/workflows/security-review.lock.yml |
Recompiled security review workflow. |
.github/workflows/red-team-benchmark.lock.yml |
Recompiled red-team benchmark. |
.github/workflows/network-isolation-test.lock.yml |
Recompiled isolation test. |
.github/workflows/export-audit.lock.yml |
Recompiled export audit. |
.github/workflows/duplicate-code-detector.lock.yml |
Recompiled duplicate-code detector. |
.github/workflows/contribution-check.lock.yml |
Recompiled contribution check. |
Review details
Tip
Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
- Files reviewed: 48/66 changed files
- Comments generated: 0
- Review effort level: Balanced
|
✅ Smoke Copilot BYOK completed. Copilot BYOK mode operational. 🔓 |
|
✨ The prophecy is fulfilled... Smoke Codex has completed its mystical journey. The stars align. 🌟 |
|
🔌 Smoke Services — All services reachable! ✅ |
|
✅ Smoke Gemini completed. All facets verified. 💎 |
|
Chroot tests passed! Smoke Chroot - All security and functionality tests succeeded. |
|
✅ Build Test Suite completed successfully! |
|
✅ Contribution Check completed successfully! Contribution check complete for PR #6957: no actionable CONTRIBUTING.md violations found in the provided context, so no comment was needed. |
|
📰 VERDICT: Smoke Copilot has concluded. All systems operational. This is a developing story. 🎤 |
|
📡 Smoke OTel Tracing completed. All tracing scenarios validated. ✅ |
|
✅ Smoke Claude passed |
|
❌ Smoke Copilot BYOK AOAI (api-key) reports failed. AOAI BYOK (api-key) mode investigation needed... |
|
🚀 Security Guard has started processing this pull request |
|
🛡️ Smoke Copilot Network Isolation confirmed the egress allowlist is enforced. ✅ |
|
❌ Smoke Copilot BYOK AOAI (Entra) reports failed. AOAI BYOK (Entra) mode investigation needed... |
|
📰 VERDICT: Smoke Docker Sbx has concluded. All systems operational. This is a developing story. 🎤 |
Smoke Test: Copilot BYOK (Direct) Mode
Running in direct BYOK mode (COPILOT_PROVIDER_API_KEY) via api-proxy → api.githubcopilot.com Overall status: PASS cc @lpcox
|
|
Copilot Smoke Test @lpcox
✅ GitHub MCP connectivity Overall: PASS
|
Smoke Test: Claude Engine Validation
Overall result: PASS
|
|
Smoke Test: Services Connectivity — FAIL
Overall: FAIL — host.docker.internal not resolvable from AWF sandbox.
|
|
EGRESS_RESULT allow=pass deny=pass ✅ allowed domain (api.github.com): HTTP 200 Overall: PASS cc @lpcox Warning Firewall blocked 1 domainThe following domain was blocked by the firewall during workflow execution:
To allow these domains, add them to the network:
allowed:
- defaults
- "example.com"See Network Configuration for more information.
|
Smoke Test: API Proxy OTEL Tracing — Results
Overall: PASS — all functional checks succeeded; no unexpected failures.
|
Smoke Test Results (Gemini)
Overall Status: FAIL
|
Smoke Test
Warning Firewall blocked 1 domainThe following domain was blocked by the firewall during workflow execution:
To allow these domains, add them to the network:
allowed:
- defaults
- "registry.npmjs.org"See Network Configuration for more information.
|
🏗️ Build Test Suite Results
Overall: 8/8 ecosystems passed — PASS Notes:
|
|
Smoke Test: Docker Sbx — Overall: PASS ✅
cc @lpcox (author)
|
Chroot Version Comparison Results
Overall: FAILED — Node.js version mismatch between host and chroot environment. The
|
Summary
Upgrades the gh-aw extension to the latest pre-release (v0.85.0) and recompiles all agentic workflows.
Changes
gh-awextension from v0.84.3 → v0.85.0github/gh-aw-actions/setup-clifrom v0.84.3 → v0.85.0github/gh-aw-actions/setupfrom v0.84.3 → v0.85.0actions-lock.jsonNotes
smoke-bounded-agents-gvisor.md,smoke-bounded-agents.md,smoke-copilot-byok-aoai-entra.md) — these are pre-existing and emit warnings but still compile successfully