Skip to content

Build sealed tuna-flow v2.7 runtime - #2

Closed
kyuhank wants to merge 1 commit into
mainfrom
agent/tuna-flow-v27
Closed

Build sealed tuna-flow v2.7 runtime#2
kyuhank wants to merge 1 commit into
mainfrom
agent/tuna-flow-v27

Conversation

@kyuhank

@kyuhank kyuhank commented Aug 8, 2026

Copy link
Copy Markdown
Collaborator

Summary

  • Publish the private tuna-flow-private:v2.7 runtime while leaving public tuna-flow:v2.5 and v2.6 unchanged.
  • Pin the exact v2.5 MFCL executable and all workflow packages to immutable commits.
  • Install private packages only at build time via a BuildKit secret; remove runtime package installation.
  • Verify the executable checksum and bundled package set during the Docker build and again by starting the completed image in GitHub Actions.

Validation

  • docker build --check tuna-flow
  • shell, R, YAML, and whitespace checks

A workflow-dispatch build with version 2.7 will verify the private image before this is merged.

@kyuhank kyuhank closed this Aug 8, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant