Repository navigation
feat(examples): publish the self-dev image to GHCR - #138
Merged
Merged
Conversation
agentctl-self-dev-image.yml builds the self-development Agent's image for linux/amd64 and linux/arm64, as altinn-studio does for its Agent images. Pull requests only build it and smoke-test the tools the Agent's instructions and skills use; main, including a manual run on main, also publishes it as ghcr.io/digdir/digdir-agents/agent-self-dev, tagged latest and sha-<commit>. The default, nested and worktree variants use the published image; the new nested-build variant builds it from the checkout. CODEOWNERS covers every agentctl-*.yml workflow with one pattern.
Contributor
|
Important Review skippedAuto reviews are disabled on this repository. Please check the settings in the CodeRabbit UI or the ⚙️ Run configuration
You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
The self-development image includes shellcheck and btop from Ubuntu, and actionlint and yq as pinned, checksum-verified release binaries; the smoke test checks the new linters. Codex is optional, so the Agent is created on a host without a Codex login, and the mediated GitHub token also reaches gist.github.com, as in altinn-studio's Agents.
cargo-deny, the version CI runs, and cargo-about, the version the release workflow runs, come as checksum-verified release binaries, so the repository's dependency, license and notices checks run inside the Agent. Ubuntu packages add what checking libkrunfw's kernel configuration needs (bc, bison, flex, libelf-dev, python3-pyelftools), sqlite3, socat and tcpdump for agentd's database, sockets and Sandbox traffic, hyperfine for measurements, and python3 explicitly for the notices script.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Publishes the self-development Agent's image to GHCR, the way altinn-studio publishes its Agent images, and adds development tools to it.
agentctl-self-dev-image.ymlbuildsagentctl/examples/self-devforlinux/amd64andlinux/arm64with a registry build cache. Pull requests only build it and smoke-test the tools the Agent's instructions and skills use.main, including a manual run onmain, also publishesghcr.io/digdir/digdir-agents/agent-self-devaslatestandsha-<commit>.nestedandworktreevariants use the published image. The newnested-buildvariant builds it from the checkout, for changes to the image itself. Codex is optional, so the Agent is created on a host without a Codex login, and the mediated GitHub token also reachesgist.github.com.cargo-denyandcargo-about(the versions CI and the release workflow run),actionlintandyqas checksum-verified release binaries;shellcheck,btop,sqlite3,socat,tcpdump,hyperfine,python3, and what checking libkrunfw's kernel configuration needs (bc,bison,flex,libelf-dev,python3-pyelftools) from Ubuntu.agentctl-*.ymlworkflow with one pattern.Image size
linux/amd64, built locally frommain(4de497a) and this pull request (0da18e2):maindocker save, about what a pull downloads)After merging, the first
mainbuild creates the package. It has to be public, because Agents pull it without credentials, and the default variants cannot start untillatestexists.