Skip to content

ci(pages): align release pins with approved squash-only policy - #186

Merged
huijoohwee merged 1 commit into
mainfrom
agent/huis-macbook-pro-3.local/adlc-squash-policy-pins
Sep 4, 2026
Merged

ci(pages): align release pins with approved squash-only policy#186
huijoohwee merged 1 commit into
mainfrom
agent/huis-macbook-pro-3.local/adlc-squash-policy-pins

Conversation

@huijoohwee

@huijoohwee huijoohwee commented Sep 4, 2026

Copy link
Copy Markdown
Owner

The approved squash-only repository policy changes the policy digests, so Pages would reject an otherwise valid release using its former pins. Update both authorization and predeployment pins to the exact current policy while retaining all canonical revision, required-check, bypass, and artifact checks.

The behavioral tests now consume each workflow gate's actual pins. Both gates must accept the approved squash-only policy and reject additional merge or rebase permissions; existing protection-drift tests remain intact.

Validation: both new cases failed before the workflow fix; 32 focused and 222 total tests pass afterward. npm test and git diff --check pass. The workflow's read-only policy and trusted-check assertions passed against live GitHub state.

Lane: agent/huis-macbook-pro-3.local/adlc-squash-policy-pins
Base-Revision: ca7ffdf
Source-Head: cde2aee

@huijoohwee
huijoohwee merged commit c6a5e9f into main Sep 4, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant