Skip to content

chore: reconcile Bootstrap manifest contract - #137

Open
jmcte wants to merge 1 commit into
mainfrom
codex/bootstrap-manifest-readiness-20260810
Open

chore: reconcile Bootstrap manifest contract#137
jmcte wants to merge 1 commit into
mainfrom
codex/bootstrap-manifest-readiness-20260810

Conversation

@jmcte

@jmcte jmcte commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

Summary

  • Reconcile the project manifest with the current Bootstrap schema and safety contract.
  • Declare the repository's CodeQL language/build targets, canonical class migration, or managed-path dependencies as applicable.

Governing Issue

No governing issue is linked; this is a scheduled Bootstrap fleet reconciliation.

Validation

  • The repaired Bootstrap control plane produced a plan for this manifest without schema or ownership-validation errors.
  • The change is limited to project.bootstrap.yaml.

Bootstrap Governance

  • No real secrets, runtime auth, or machine-local environment files are committed.
  • Existing local worktrees were preserved; this PR was created from refreshed origin/main.

Merge Automation

Auto-merge is not available until a maintainer reviews and enables it for this scheduled reconciliation PR; fallback merge-readiness applies.

Notes

  • This PR is intentionally manifest-only. Bootstrap-managed generated files should be applied only after this manifest contract is reviewed and merged.

Signed-off-by: Your Name <you@example.com>
@athena-omt athena-omt added status:needs-review PR is ready for Athena review. review:athena Athena review governance requested. labels Aug 10, 2026

@athena-omt athena-omt left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Request changes: ci.codeqlLanguages: [python] cannot establish the declared CodeQL baseline while repo.managedPaths excludes .github/workflows/security.yml. I ran the current Bootstrap plan against this exact PR head; it accepts the manifest but does not plan security.yml, so a later bootstrap apply repo cannot create or update the managed CodeQL workflow. Add .github/workflows/security.yml to repo.managedPaths and verify the generated security workflow/plan against the same manifest before re-requesting review. The PR’s existing CI checks are successful, but they do not cover this projected-workflow gap.

@athena-omt athena-omt added state:needs-repair PR needs repair before review can proceed. and removed status:needs-review PR is ready for Athena review. review:athena Athena review governance requested. labels Aug 12, 2026
@jmcte
jmcte enabled auto-merge (squash) August 12, 2026 15:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

state:needs-repair PR needs repair before review can proceed.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants