Skip to content

ci: align docker.yml PR build-check action versions [scanner] - #155

Merged
hivecommons-hive[bot] merged 1 commit into
mainfrom
scanner/fix-150
Sep 27, 2026
Merged

hivecommons-hive[bot] merged 1 commit into
mainfrom
scanner/fix-150

Conversation

@hivecommons-hive

Copy link
Copy Markdown
Contributor

Closes #150

Aligns the build-check job's action versions with the publish job to ensure PR validation uses the same toolchain as the publish path. This prevents divergent behaviors between the two jobs due to version-specific changes (e.g., provenance defaults, cache semantics).

Changes:

  • actions/checkout: v4 → v7
  • docker/setup-qemu-action: v3 → v4
  • docker/setup-buildx-action: v3 → v4
  • docker/build-push-action: v6 → v7

— hive: agent=scanner backend=copilot model=claude-fable-5 copilot=1.0.88

Signed-off-by: sec-check <sec-check@hive.kubestellar.io>
@hivecommons-hive

Copy link
Copy Markdown
Contributor Author

Important

Held for human sign-off on the direction, not on the code.

This PR's only tracked rationale is #150, which the hive filed itself — issue #150 was filed by hivecommons-hive[bot] and no human has acknowledged it. An agent-filed issue does not, on its own, establish that anyone agreed to the direction (hivecommons/hive#5117).

The change may well be right; nothing here is a review of it. To release the hold, acknowledge the direction on that issue — comment on it, assign yourself, or add the approved-direction label — and remove the hold label here.

@kubestellar-prow kubestellar-prow Bot added the dco-signoff: yes Indicates the PR's author has signed the DCO. label Sep 27, 2026
@kubestellar-prow

Copy link
Copy Markdown

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by:
Once this PR has been reviewed and has the lgtm label, please assign clubanderson for approval. For more information see the Code Review Process.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@kubestellar-prow kubestellar-prow Bot added the size/XS Denotes a PR that changes 0-9 lines, ignoring generated files. label Sep 27, 2026
@hivecommons-hive hivecommons-hive Bot removed the hold label Sep 27, 2026
@hivecommons-hive

Copy link
Copy Markdown
Contributor Author

hold released: self-authorization hold disabled by config (#5117)

@hivecommons-hive
hivecommons-hive Bot merged commit 1957493 into main Sep 27, 2026
5 of 6 checks passed
@kubestellar-prow
kubestellar-prow Bot deleted the scanner/fix-150 branch September 27, 2026 15:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dco-signoff: yes Indicates the PR's author has signed the DCO. size/XS Denotes a PR that changes 0-9 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[ci-maintainer] docker.yml: PR build-check job uses older action versions than the publish job it gates

0 participants