Automated Safe Dependency Updates This PR contains safe patch-level dependency updates verified to pass the test suite and build. Updated Dependencies | Package | Previous | Updated | Type | |---------|----------|---------|------| | eslint | ^10.8.0 | ^10.9.0 | patch | Security Fixes Included None — npm audit reported 0 vulnerabilities and no open Dependabot alerts were accessible/found. This is a routine patch-level freshness update. Verification [x] npm run build passes [x] npm test passes (308/311 suites; the 3 pre-existing failures in src/enclave/mount-policy.test.ts and related files reproduce identically on main without this change — they stem from /var/tmp not existing in this sand...
Workflow Failure Workflow: Dependency Security Monitor Branch: main Run: https://github.com/github/gh-aw-firewall/actions/runs/32210085773 [!WARNING] Engine Failure: The copilot engine terminated unexpectedly. Last agent output: Action Required Assign this issue to an agent to debug and fix the issue. <details> <summary>Debug with any coding agent</summary> Use this prompt with any coding agent (GitHub Copilot, Claude, Gemini, etc.): </details> <details> <summary>Manually invoke the agent</summary> Debug this workflow failure using your favorite Agent CLI and the agentic-workflows prompt. Start your agent Load the agentic-workflows skill from .github/skills/agentic-workflows/SKILL.md or <...
Workflow Failure Workflow: Dependency Security Monitor Branch: main Run: https://github.com/github/gh-aw-firewall/actions/runs/31989352830 [!WARNING] Missing Tools Reported: The agent reported missing tools during execution. Missing Tools: list\dependabot\alerts / get\dependabot\alert: Dependabot alerts API returned 403 \(token lacks security\events scope\) so alerts could not be cross-checked with npm audit findings. Alternatives: | Tool | Alternative | | --- | --- | | list\dependabot\alerts / get\dependabot\alert | Grant security\events/Dependabot read permission to the workflow token, or run 'gh api /repos/github/gh-aw-firewall/dependabot/alerts' with a PAT that has this scope. | Actio...
Workflow Failure Workflow: Dependency Security Monitor Branch: main Run: https://github.com/github/gh-aw-firewall/actions/runs/31860264911 [!WARNING] Engine Failure: The copilot engine terminated unexpectedly. Last agent output: Action Required Assign this issue to an agent to debug and fix the issue. <details> <summary>Debug with any coding agent</summary> Use this prompt with any coding agent (GitHub Copilot, Claude, Gemini, etc.): </details> <details> <summary>Manually invoke the agent</summary> Debug this workflow failure using your favorite Agent CLI and the agentic-workflows prompt. Start your agent Load the agentic-workflows skill from .github/skills/agentic-workflows/SKILL.md or <...
Workflow Failure Workflow: Dependency Security Monitor Branch: main Run: https://github.com/github/gh-aw-firewall/actions/runs/31291851630 [!WARNING] Missing Tools Reported: The agent reported missing tools during execution. Missing Tools: list\dependabot\alerts / get\dependabot\alert: Dependabot alerts API returned 403 \(token lacks security\events scope\), so Dependabot alerts could not be cross-checked for this run. Alternatives: | Tool | Alternative | | --- | --- | | list\dependabot\alerts / get\dependabot\alert | Grant the workflow token 'security\events' scope, or run npm audit + manual Dependabot dashboard review as a fallback \(done for this run via npm audit\). | Action Required ...
Automated Safe Dependency Updates This PR contains safe patch-level dependency updates that have been verified to pass all tests (no new failures introduced) and have no breaking changes. Updated Dependencies | Package | Previous | Updated | Type | |---------|----------|---------|------| | globals | 17.7.0 | 17.8.0 | patch | | markdownlint-cli2 | 0.23.1 | 0.23.2 | patch | Security Fixes Included None — npm audit reported 0 vulnerabilities (0 critical/high/moderate/low) across all 651 dependencies at the time of this run. GitHub Dependabot alerts could not be checked in this run because the workflow token lacks securityevents/Dependabot-alerts read permission for this repository (403 respo...