Conversation
#893) Bumps the actions-deps group with 1 update: [docker/login-action](https://github.com/docker/login-action). Updates `docker/login-action` from 4.5.0 to 4.5.1 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@06fb636...abd2ef4) --- updated-dependencies: - dependency-name: docker/login-action dependency-version: 4.5.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps CliWrap from 3.10.2 to 3.10.3 Bumps ptr727.LanguageTags from 1.5.58 to 1.5.60 --- updated-dependencies: - dependency-name: CliWrap dependency-version: 3.10.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps - dependency-name: ptr727.LanguageTags dependency-version: 1.5.60 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
#897) Bumps the actions-deps group with 1 update: [docker/login-action](https://github.com/docker/login-action). Updates `docker/login-action` from 4.5.1 to 4.5.2 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@abd2ef4...371161b) --- updated-dependencies: - dependency-name: docker/login-action dependency-version: 4.5.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: actions-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
#899) Bumps the actions-deps group with 1 update: [docker/login-action](https://github.com/docker/login-action). Updates `docker/login-action` from 4.5.2 to 4.6.0 - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@371161b...dbcb813) --- updated-dependencies: - dependency-name: docker/login-action dependency-version: 4.6.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps CliWrap from 3.10.3 to 3.10.4 --- updated-dependencies: - dependency-name: CliWrap dependency-version: 3.10.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps ptr727.LanguageTags from 1.5.60 to 1.5.62 --- updated-dependencies: - dependency-name: ptr727.LanguageTags dependency-version: 1.5.62 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
These files are carried verbatim from ptr727/ProjectTemplate, so a local copy that differs is drift rather than a choice. The hub's regenerated fleet divergence report lists this repo for them. Changed: .markdownlint-cli2.jsonc repo-config/configure.sh Line endings preserved as each file held them. Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
Bumps ptr727.LanguageTags from 1.5.62 to 1.5.64 --- updated-dependencies: - dependency-name: ptr727.LanguageTags dependency-version: 1.5.64 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
) Bumps the actions-deps group with 1 update: [DavidAnson/markdownlint-cli2-action](https://github.com/davidanson/markdownlint-cli2-action). Updates `DavidAnson/markdownlint-cli2-action` from 24.1.0 to 24.2.0 - [Release notes](https://github.com/davidanson/markdownlint-cli2-action/releases) - [Commits](DavidAnson/markdownlint-cli2-action@6bf21b0...21c1be1) --- updated-dependencies: - dependency-name: DavidAnson/markdownlint-cli2-action dependency-version: 24.2.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: actions-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps ptr727.LanguageTags from 1.5.64 to 1.5.68 --- updated-dependencies: - dependency-name: ptr727.LanguageTags dependency-version: 1.5.68 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps ptr727.LanguageTags from 1.5.68 to 1.5.72 --- updated-dependencies: - dependency-name: ptr727.LanguageTags dependency-version: 1.5.72 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps ptr727.LanguageTags from 1.5.72 to 1.5.74 --- updated-dependencies: - dependency-name: ptr727.LanguageTags dependency-version: 1.5.74 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps Microsoft.SourceLink.GitHub from 10.0.301 to 10.0.400 Bumps ptr727.LanguageTags from 1.5.74 to 1.5.78 Bumps System.CommandLine from 2.0.10 to 2.0.11 --- updated-dependencies: - dependency-name: Microsoft.SourceLink.GitHub dependency-version: 10.0.400 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps - dependency-name: ptr727.LanguageTags dependency-version: 1.5.78 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps - dependency-name: System.CommandLine dependency-version: 2.0.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps ptr727.LanguageTags from 1.5.78 to 1.5.80 --- updated-dependencies: - dependency-name: ptr727.LanguageTags dependency-version: 1.5.80 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps ptr727.LanguageTags from 1.5.80 to 1.5.82 --- updated-dependencies: - dependency-name: ptr727.LanguageTags dependency-version: 1.5.82 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-deps ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* Resync the carried instruction set and config with the hub Migrate AGENTS.md onto the router split, carrying the verbatim Fleet Bootstrap, Context and Delegation, and Where the Rules Live sections, and move the fleet-law sections into a new GOVERNANCE.md with this repo's own Devcontainer and Repository Layout. Carry OPERATIONS.md and host-tools.json, converge CODESTYLE.md on the General plus Skill-pointer shape while keeping this repo's own .NET and Python conventions, and re-vendor the verbatim configs, the github-release job, and the intent files (.editorconfig, .gitattributes, cspell.json, codecov.yml, AUDIT.md, spec/secrets.json, repo-config/README.md, .github/copilot-instructions.md). Retire repo-config/configure.sh, which the hub hosts, and re-point every mention of it. * Drop the hub slug from the review runbook and reindent version.json
Rename Use Cases to Overview and move Questions or Issues after Usage, so the declared sections keep their relative order. Rename the shared destinations to their fleet names (commits-link, docker-hub-link, a bare license path), split the Internal link group into Distribution and Repo, and give every 3rd Party Tools entry the fleet's one description and link.
There was a problem hiding this comment.
Pull request overview
Promotes develop to main, bringing main up to date with the fleet resync work (governance/doc structure, repo configuration baseline, and workflow contract clarifications) plus the dependency bumps that already exist on develop. This is primarily a governance + CI/configuration alignment change with no intended functional changes to the PlexCleaner application.
Changes:
- Introduces the governance “router split” by adding
GOVERNANCE.mdand updating cross-references across docs and Copilot instructions. - Adds operational/runbook documentation (
OPERATIONS.md) and host tool declaration (host-tools.json), and updates repo self-audit/config docs to reflect hub-hosted tooling (including deleting the carriedrepo-config/configure.sh). - Updates workflows and dependency pins/versions (NuGet packages and GitHub Actions), plus doc/config linting settings (
markdownlint,cspell, Codecov).
Reviewed changes
Copilot reviewed 23 out of 26 changed files in this pull request and generated no comments.
Show a summary per file
| File | Description |
|---|---|
| WORKFLOW.md | Updates workflow contract text (including new D4.9 guarantee) and repoints governance references to GOVERNANCE.md / hub-hosted tooling. |
| version.json | Re-indents only; keeps version floor at 3.22 and publicReleaseRefSpec targeting main. |
| spec/secrets.json | Clarifies secret-store expectations (notably adding Dependabot store for CODECOV_TOKEN). |
| repo-config/settings.json | Formatting-only reindent of repo settings payload. |
| repo-config/README.md | Rewrites guidance to reflect hub-hosted configure.sh (not carried) and unmanaged bypass_actors. |
| repo-config/main.json | Removes managed bypass_actors from payload (now deliberately unmanaged). |
| repo-config/develop.json | Removes managed bypass_actors from payload (now deliberately unmanaged). |
| repo-config/configure.sh | Deletes carried script to enforce hub-hosted tooling model. |
| README.md | Aligns README structure, links, and third-party-tools section to fleet spec. |
| OPERATIONS.md | Adds local verification + runbooks documentation for publish/test/regression workflows. |
| host-tools.json | Declares required host tooling (dotnet SDK >= 10.0) for this repo. |
| GOVERNANCE.md | Adds fleet governance rule text as a new canonical cross-cutting authority (router target for AGENTS.md). |
| Directory.Packages.props | Updates NuGet package versions (e.g., CliWrap, SourceLink, LanguageTags, System.CommandLine). |
| cspell.json | Adds mermaid fenced-block ignore pattern and expands project vocabulary word list. |
| CODESTYLE.md | Reshapes into fleet-wide codestyle doc with skill pointers + PlexCleaner-specific conventions appended. |
| codecov.yml | Clarifies advisory-only coverage status configuration and disables PR comments. |
| AUDIT.md | Updates self-audit documentation/commands for unmanaged bypass_actors and dual-store secret expectations. |
| ARCHITECTURE.md | Repoints governance references to include GOVERNANCE.md and clarifies workflow/governance ownership. |
| .markdownlint-cli2.jsonc | Allows <details>/<summary> under MD033 and clarifies lint rationale in comments. |
| .github/workflows/validate-task.yml | Updates markdownlint-cli2-action pin. |
| .github/workflows/build-release-task.yml | Comment clarifications and robustness tweak for artifact deletion warning handling; confirms build/publish gating semantics. |
| .github/workflows/build-docker-task.yml | Updates docker/login-action pin. |
| .github/copilot-instructions.md | Updates Copilot runbook to the new governance split and expands the operational review-loop guidance. |
| .gitattributes | Expands and clarifies EOL pinning (husky hook, uv.lock, Dockerfiles). |
| .editorconfig | Clarifies CRLF/LF policy and adds explicit pins for .husky/pre-commit and uv.lock; refines comments. |
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Promote
developtomain. Merge commit, per themainruleset, anddevelopis not deleted.What
developcarries beyondmain(17 commits, no conflicts on a test merge):AGENTS.mdrouter split with a newGOVERNANCE.md,OPERATIONS.md,host-tools.json,CODESTYLE.mdon the Skill-pointer shape, verbatim config re-vendors,repo-config/configure.shretired.develop(Bump docker/login-action from 4.5.0 to 4.5.1 in the actions-deps group #893 to Bump the nuget-deps group with 1 update #920), whichmainhas absorbed through its own parallel bot PRs.No functional change to the application, so
version.jsonkeeps its3.22floor. A human merge never publishes, so the release ships on the next weekly publisher run or a manual dispatch frommain.