Bump MCP Gateway (gh-aw-mcpg) from v0.4.8 to v0.4.9 - #51754
Conversation
Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
|
@copilot resolve the merge conflicts on this branch. |
There was a problem hiding this comment.
Pull request overview
Updates gh-aw’s default MCP Gateway from v0.4.8 to v0.4.9.
Changes:
- Bumps the gateway version constant.
- Updates all three digest pin registries consistently.
- Recompiles 284 generated workflow lock files with the new image.
The implementation matches the stated scope, but the branch currently has merge conflicts.
Show a summary per file
| File | Description |
|---|---|
pkg/constants/version_constants.go |
Updates the default gateway version. |
.github/aw/actions-lock.json |
Updates the repository image pin. |
pkg/actionpins/data/action_pins.json |
Updates action-pin data. |
pkg/workflow/data/action_pins.json |
Updates compiler pin data. |
.github/workflows/*.lock.yml (284 files) |
Regenerates workflows with v0.4.9 and its digest. |
Review details
Tip
Add a code-review agent skill for context-aware, tailored reviews. Learn more in the docs.
- Files reviewed: 78/288 changed files
- Comments generated: 0
- Review effort level: Balanced
Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
Merge conflicts resolved in 4f1070e. The three conflicting files ( |
|
@copilot PR sous-chef triage: please refresh the current maintainer-facing state on the latest head, resolve any addressed unresolved review threads, refresh the branch if GitHub can update it cleanly, and run the No failed checks were listed in the compact candidate snapshot.
|
|
@copilot resolve the merge conflicts on this branch. |
Ran
Hand-off: a maintainer needs to re-trigger CI (close/reopen, |
Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
Resolved in 0473188. Resolved the same way as before: took main's version of the generated lock file and regenerated it with Verified: no |
|
@copilot PR sous-chef triage: please refresh the current maintainer-facing state on the latest head, resolve any addressed unresolved review threads, refresh the branch if GitHub can update it cleanly, and run the No failed checks were listed in the compact candidate snapshot.
|
Ran
Hand-off: unchanged from the last pass — a maintainer needs to re-trigger CI (close/reopen, |
Triage: Bump MCP Gateway (gh-aw-mcpg) from v0.4.8 to v0.4.9
|
|
@copilot resolve the merge conflicts on this branch. |
Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
Resolved in 9e9e85b. Resolved the same way as before: took main's version of each conflicted lock file and regenerated with Verified: no |
Routine dependency check found the MCP Gateway container image is one version behind. v0.4.9 includes secret-sanitization in log lines and a trusted host-path mount policy for container MCP servers, along with several reliability fixes (circuit breaker, HTTP backend registration, secrecy label handling).
Changes
DefaultMCPGatewayVersioninpkg/constants/version_constants.gofromv0.4.8tov0.4.9.ghcr.io/github/gh-aw-mcpg:v0.4.9(sha256:e5a1569aeaf41820fa7bdee3e94468cae448133cdbf00119ad24f5b74db1ab9f) and updated the pin entries in.github/aw/actions-lock.json,pkg/actionpins/data/action_pins.json, andpkg/workflow/data/action_pins.json..lock.ymlfiles so every generated workflow now references the digest-pinnedgh-aw-mcpg:v0.4.9@sha256:...image instead of the prior v0.4.8 pin.gh-aw-node) were intentionally left untouched to keep the diff minimal.Run: https://github.com/github/gh-aw/actions/runs/31386523734> Generated by 👨🍳 PR Sous Chef · gpt54 · 15.8 AIC · ⌖ 7.79 AIC · ⊞ 6.1K · ◷