Skip to content

feat: evidence-gate Hermes delivery and attribution - #2

Merged
lightcloud00 merged 6 commits into
codex/hermes-model-route-20260821from
codex/hermes-evidence-gates-20260823
Aug 23, 2026
Merged

feat: evidence-gate Hermes delivery and attribution#2
lightcloud00 merged 6 commits into
codex/hermes-model-route-20260821from
codex/hermes-evidence-gates-20260823

Conversation

@lightcloud00

@lightcloud00 lightcloud00 commented Aug 23, 2026

Copy link
Copy Markdown
Owner

Adds opt-in request attribution for every Hermes completion path, GitHub action receipts with exact-head readback, receipt-pending Kanban completion and exact-once reconciliation, five-minute dispatch-admission receipts, legacy hold migration, and cross-board worker ceilings.

Also keeps upstream larger-runner behavior intact while using standard GitHub-hosted runners only in the personal evidence fork, where organization-level larger-runner groups are unavailable. The fallback covers every callable Python, OS, Nix, JS, Rust, and desktop lane; Docker publish/build remains restricted to the upstream repository by its existing gate.

Exact source:

  • Head: bacc1e3496cfbe1e5f51bbfc5b859c8442b1350b
  • Base: 3687f750c5a60b336091316499f47b63639552cf

Verification:

  • Repository-native hermetic affected suite: 176 passed, 1 expected host-specific skip, 0 failed
  • Workflow actionlint: passed for every modified workflow
  • Ruff: passed for all changed Python files
  • git diff --check: passed
  • Hook doctor: 10 stress passes
  • Standalone Alpha interop acceptance: passed

Safety:

  • Embedded dispatch remains disabled
  • Runtime services and rollback listener state remain unchanged
  • Existing task rows and workspaces are preserved

@coderabbitai

coderabbitai Bot commented Aug 23, 2026

Copy link
Copy Markdown

Important

Review skipped

Auto reviews are disabled on this repository. Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Path: .coderabbit.yaml

Review profile: CHILL

Plan: Pro Plus

Run ID: 31245c7d-6575-49b4-907a-747d6636fde1

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@github-actions

github-actions Bot commented Aug 23, 2026

Copy link
Copy Markdown

૮ >ﻌ< ა ci review

ran on bacc1e3 — ci: cover remaining evidence fork lanes

⚠️ Warnings

OSV vulnerability scan · View job

7 known vulnerabilities found in pinned dependencies.

How to fix:

Review the findings in the Security tab. Update the affected dependencies if a patched version is available.


ℹ️ Info

CI-sensitive file review · View job

PR touches sensitive files, but the ci-reviewed label has been added, approving them.

Sensitive files changed:


debug info

CI timings

CI timings · View report · View job

Wall time 31m53s (no baseline yet).

@lightcloud00 lightcloud00 added the ci-reviewed Maintainer verified CI-sensitive changes label Aug 23, 2026
@lightcloud00
lightcloud00 merged commit dd221f3 into codex/hermes-model-route-20260821 Aug 23, 2026
62 of 65 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ci-reviewed Maintainer verified CI-sensitive changes

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant