Repository navigation
Conversation
PR Summary by QodoRun Ymir agent containers with catatonit as PID 1
AI Description
Diagram
High-Level Assessment
Files changed (18)
|
|
I didn't run e2e tests yet. waiting for copr to be available |
Code Review by Qodo
1.
|
Install catatonit in both agent images and preserve the image entrypoint in OpenShift deployments. Add static CI checks for image and deployment startup configuration, with local runtime checks for orphan reaping, signal forwarding, exit codes, non-root execution, and agent module imports. Reject commented or overridden init entrypoints and empty deployment discovery. Document the persistent-worker decision. Assisted-by: Codex (GPT-6)
cgwalters
left a comment
There was a problem hiding this comment.
Definitely a good idea, though the most robust long term fix is to avoid long-lived containers (or VMs) and have most agents align with CI and be relatively short-lived (e.g. 6h cap like GHA does)
| for cf in CONTAINERFILES: | ||
| with open(cf) as f: | ||
| content = f.read() | ||
| # Dockerfile comments are ignored, including between continued lines. |
There was a problem hiding this comment.
This is a pretty fragile and hacky parser...
I think a more robust check for this is looking at the built images (which can be done as part of a CI pipeline that builds them) and not re-inspecting the source code.
Install catatonit in both agent images and preserve the image entrypoint in OpenShift deployments. Add static CI checks for image and deployment startup configuration, with local runtime checks for orphan reaping, signal forwarding, exit codes, non-root execution, and agent module imports. Reject commented or overridden init entrypoints and empty deployment discovery. Document the persistent-worker decision.
Assisted-by: Codex (GPT-6)