Skip to content

ci: add hash-locked CompanyScope and Sentinel conformance - #252

Merged
imran-siddique merged 1 commit into
agentrust-io:mainfrom
dinakarjs:ci/fixed-conformance-248
Oct 2, 2026
Merged

imran-siddique merged 1 commit into
agentrust-io:mainfrom
dinakarjs:ci/fixed-conformance-248

Conversation

@dinakarjs

Copy link
Copy Markdown
Contributor

Adds hash-locked conformance lanes for CompanyScope Incident Register and Sentinel while retaining the floating lanes for release drift detection. Lockfile changes trigger both workflows.

CompanyScope pins agent-manifest 0.12.0 and verifies it matches integration.yaml. Sentinel locks its runtime and conformance dependencies together, including urllib3 2.8.0 and PyJWT 2.15.1. Both fixed lanes install with pip --require-hashes and run the existing tests on Python 3.11, 3.12, and 3.13.

Validation:

  • Generated both universal hash locks with uv pip compile --generate-hashes --universal --python-version 3.11.
  • Installed each lock with hash verification in isolated environments on all three Python versions.
  • CompanyScope: 8 tests passed per version; manifest version checks passed on all three.
  • Sentinel: 17 tests passed per version.
  • actionlint and git diff --check passed.

Closes #248.

@dinakarjs
dinakarjs requested review from a team, carloshvp and imran-siddique as code owners October 2, 2026 06:33
@imran-siddique
imran-siddique merged commit 4579b11 into agentrust-io:main Oct 2, 2026
24 of 25 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Add hash-locked fixed conformance jobs for companyscope-incident-register and sentinel

2 participants