8000
Skip to content

chore: bump @playwright/mcp 0.0.68→0.0.69 and MCP Gateway v0.2.9→v0.2.10#23644

Merged
pelikhan merged 4 commits intomainfrom
copilot/update-cli-mcp-versions
Mar 31, 2026
Merged

chore: bump @playwright/mcp 0.0.68→0.0.69 and MCP Gateway v0.2.9→v0.2.10#23644
pelikhan merged 4 commits intomainfrom
copilot/update-cli-mcp-versions

Conversation

Copy link
Copy Markdown
Contributor
Copilot AI commented Mar 31, 2026

Routine version bump for two MCP components detected on 2026-03-31.

Changes

  • pkg/constants/constants.go: Update DefaultPlaywrightMCPVersion (0.0.680.0.69) and DefaultMCPGatewayVersion (v0.2.9v0.2.10)
  • 178 workflow lock files: Recompiled — all now reference ghcr.io/github/gh-aw-mcpg:v0.2.10

Notes

  • @playwright/mcp 0.0.69: low risk, no breaking changes
  • MCP Gateway v0.2.10: security hardening — expanded DIFC labels and guard coverage; DIFC proxy now enabled by default on all guarded workflows

Warning

Firewall rules blocked me from connecting to one or more addresses (expand for details)

I tried to connect to the following addresses, but was blocked by firewall rules:

  • https://api.github.com/graphql
    • Triggering command: /usr/bin/gh /usr/bin/gh api graphql -f query=query($owner: String!, $name: String!) { repository(owner: $owner, name: $name) { hasDiscussionsEnabled } } -f owner=github -f name=gh-aw (http block)
    • Triggering command: /usr/bin/gh /usr/bin/gh api graphql -f query=query($owner: String!, $name: String!) { repository(owner: $owner, name: $name) { hasDiscussionsEnabled } } -f owner=github -f name=gh-aw 8c73-dfb0f3db818-C (http block)
    • Triggering command: /usr/bin/gh /usr/bin/gh api graphql -f query=query($owner: String!, $name: String!) { repository(owner: $owner, name: $name) { hasDiscussionsEnabled } } -f owner=github -f name=gh-aw .cfg 64/pkg/tool/linu--show-toplevel git rev-�� --show-toplevel 64/pkg/tool/linux_amd64/vet /usr/bin/git 427723/b234/_pkggit vCqp/OYzvh3PxcMirev-parse ache/go/1.25.0/x--show-toplevel git (http block)
  • https://api.github.com/orgs/test-owner/actions/secrets
    • Triggering command: /usr/bin/gh gh api /orgs/test-owner/actions/secrets --jq .secrets[].name -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json /color.go x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh api /orgs/test-owner/actions/secrets --jq .secrets[].name "prettier" --wriGOINSECURE git 64/bin/go tierignore /opt/hostedtoolcenv /usr/bin/git node /hom�� --write ../../../**/*.jsGOMOD 64/bin/go --ignore-path ../../../.pretti/root/.launchpadlib/api.launchpad.net/cache ache/go/1.25.0/x-type go (http block)
  • https://api.github.com/repos/actions/ai-inference/git/ref/tags/v1
    • Triggering command: /usr/bin/gh gh api /repos/actions/ai-inference/git/ref/tags/v1 --jq .object.sha GOMODCACHE x_amd64/vet /usr/bin/git ub/workflows GO111MODULE x_amd64/vet git rev-�� --show-toplevel x_amd64/vet /usr/bin/git _.a W84F_MVLH x_amd64/vet /usr/bin/git (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/ai-inference/git/ref/tags/v1 --jq .object.sha user.email test@example.com /usr/bin/git -json GO111MODULE 64/bin/go git rev-�� --show-toplevel go /usr/bin/git -json GO111MODULE node git (http block)
  • https://api.github.com/repos/actions/checkout/git/ref/tags/v3
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v3 --jq .object.sha sistency_GoAndJavaScript152131457/001/test-frontmatter-with-nest-test.timeout=10m0s -buildtags /usr/bin/git -errorsas -ifaceassert -nilfunc git rev-�� --show-toplevel -tests /opt/hostedtoolcache/go/1.25.0/x64/pkg/tool/linux_amd64/compile -json GO111MODULE x_amd64/compile /opt/hostedtoolcache/go/1.25.0/x64/pkg/tool/linux_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v3 --jq .object.sha "prettier" --check '**/*.cjs' '**/*.ts' '**/*.json' --ignore-path ../../../.prettierignore GOPROXY /usr/bin/git GOSUMDB GOWORK 64/bin/go git -c ErrorFormatting2577349767/001 log /usr/bin/git -n1 --format=format:rev-parse 6cd33749ef3f4ee4--show-toplevel git (http block)
  • https://api.github.com/repos/actions/checkout/git/ref/tags/v5
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v5 --jq .object.sha rtcfg .cfg 64/pkg/tool/linux_amd64/vet GOINSECURE /execenv GOMODCACHE 64/pkg/tool/linu--json env 427723/b241/_pkg--workflow Py4f/fabLKooQ2qrnonexistent-workflow-test-12345 ger.test GOINSECURE t/internal/tag GOMODCACHE ger.test (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v5 --jq .object.sha github.event.issue.number x_amd64/vet /usr/bin/git _.a ipBU_UDMP 64/pkg/tool/linu--show-toplevel git rev-�� --show-toplevel 64/pkg/tool/linuorigin /usr/bin/git RHWPMZAE3 .cfg 64/pkg/tool/linu--show-toplevel git (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v5 --jq .object.sha --show-toplevel ache/go/1.25.0/x64/pkg/tool/linux_amd64/vet /usr/bin/git se 3932912/b240/vetrev-parse ingutil.test git rev-�� --show-toplevel ingutil.test n-dir/node /tmp/go-build678git -trimpath /opt/hostedtoolc--show-toplevel git (http block)
  • https://api.github.com/repos/actions/checkout/git/ref/tags/v6
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v6 --jq .object.sha k/gh-aw/gh-aw/.github/workflows/auto-triage-issues.md x_amd64/compile /usr/bin/git -json GO111MODULE x_amd64/vet git -C /tmp/gh-aw-test-runs/20260331-051047-32966/test-3992780226 status /usr/bin/git .github/workflowgit 5a19429c:go.mod x_amd64/vet git (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v6 --jq .object.sha /tmp/file-tracker-test1336072464/test1.md /tmp/file-tracker-test1336072464/test2.lock.yml /usr/bin/git -json GO111MODULE x_amd64/vet git rese�� HEAD .github/workflows/test.md /usr/bin/git -json GO111MODULE x_amd64/vet git (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/checkout/git/ref/tags/v6 --jq .object.sha --show-toplevel ache/go/1.25.0/x64/pkg/tool/linuTest User /usr/bin/git 1047-32966/test-git 3932912/b077/vetrev-parse ache/go/1.25.0/x--show-toplevel git rev-�� --show-toplevel ache/go/1.25.0/x64/pkg/tool/linux_amd64/vet /usr/bin/docker se 3932912/b202/vetrev-parse ache/go/1.25.0/x--show-toplevel docker (http block)
  • https://api.github.com/repos/actions/github-script/git/ref/tags/v8
    • Triggering command: /usr/bin/gh gh api /repos/actions/github-script/git/ref/tags/v8 --jq .object.sha -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/github-script/git/ref/tags/v8 --jq .object.sha -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json g/catalog.go x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/github-script/git/ref/tags/v8 --jq .object.sha -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json GO111MODULE x_amd64/vet GOINSECURE GOMOD GOMODCACHE x_amd64/vet (http block)
  • https://api.github.com/repos/actions/setup-go/git/ref/tags/v4
    • Triggering command: /usr/bin/gh gh api /repos/actions/setup-go/git/ref/tags/v4 --jq .object.sha /tmp/TestHashStability_SameInputSameOutput2095053446/001/stabili-p x_amd64/compile r,url,status,conclusion,workflowName,createdAt,startedAt,updated-lang=go1.25 -json flow-12345 x_amd64/vet git add .github/workflows/test.md x_amd64/vet /usr/bin/git -json GO111MODULE x_amd64/vet git (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/setup-go/git/ref/tags/v4 --jq .object.sha /home/REDACTED/work/gh-aw/gh-aw/.github/workflows/agent-performance-analyzer.md go /usr/bin/git -json GO111MODULE 64/bin/go git rev-�� --show-toplevel go /usr/bin/git -json GO111MODULE 64/bin/go git (http block)
  • https://api.github.com/repos/actions/setup-node/git/ref/tags/v4
    • Triggering command: /usr/bin/gh gh api /repos/actions/setup-node/git/ref/tags/v4 --jq .object.sha k/gh-aw/gh-aw/.github/workflows/blog-auditor.md x_amd64/compile /usr/bin/git -json GO111MODULE x_amd64/vet git rese�� HEAD .github/workflows/test.md /usr/bin/unpigz -json irent.go x_amd64/vet /usr/bin/unpigz (http block)
    • Triggering command: /usr/bin/gh gh api /repos/actions/setup-node/git/ref/tags/v4 --jq .object.sha user.email test@example.com /usr/bin/git -json GO111MODULE 64/bin/go git rev-�� --show-toplevel go /usr/bin/git -json GO111MODULE 64/bin/go git (http block)
  • https://api.github.com/repos/astral-sh/setup-uv/git/ref/tags/eac588ad8def6316056a12d4907a9d4d84ff7a3b
    • Triggering command: /usr/bin/gh gh api /repos/astral-sh/setup-uv/git/ref/tags/eac588ad8def6316056a12d4907a9d4d84ff7a3b --jq .object.sha (http block)
  • https://api.github.com/repos/github/gh-aw
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw --jq .visibility (http block)
  • https://api.github.com/repos/github/gh-aw-actions/git/ref/tags/v0
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw-actions/git/ref/tags/v0 --jq .object.sha (http block)
  • https://api.github.com/repos/github/gh-aw-actions/git/ref/tags/v0.1.2
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw-actions/git/ref/tags/v0.1.2 --jq .object.sha /tmp/TestHashConsistency_GoAndJavaScript152131457/001/test-inlined-imports-enabled-with-env-tempgit x_amd64/compile /usr/bin/git ith-tools.md GO111MODULE x_amd64/vet git -C nt/action/git/ref/tags/v999.999.999 rev-parse /usr/bin/git @{u} GO111MODULE x_amd64/vet git (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw-actions/git/ref/tags/v0.1.2 --jq .object.sha --get remote.origin.url /usr/bin/git -json GO111MODULE 64/bin/go git rev-�� --show-toplevel go /usr/bin/git -json GO111MODULE 64/bin/go git (http block)
  • https://api.github.com/repos/github/gh-aw-actions/git/ref/tags/v1.0.0
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw-actions/git/ref/tags/v1.0.0 --jq .object.sha atjTay5oJ /tmp/go-build1903932912/b118/vet.cfg 3932912/b409/vet.cfg l **/*.cjs 64/bin/go /opt/hostedtoolcache/go/1.25.0/x64/pkg/tool/linux_amd64/vet ortc�� -unreachable=false stmain.go 0/x64/bin/node -json GO111MODULE 64/bin/go /opt/hostedtoolcache/go/1.25.0/x64/pkg/tool/linu-buildtags (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw-actions/git/ref/tags/v1.0.0 --jq .object.sha -json GO111MODULE /bin/sh GOINSECURE GOMOD GOMODCACHE /bin/sh -c 1334-46431/test-2340806400 GOPROXY /home/REDACTED/work/gh-aw/gh-aw/node_modules/.bin/sh GOSUMDB GOWORK 64/bin/go sh (http block)
  • https://api.github.com/repos/github/gh-aw-actions/git/ref/tags/v1.2.3
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw-actions/git/ref/tags/v1.2.3 --jq .object.sha 1047-32966/test-3992780226 /tmp/go-build1903932912/b143/vet.cfg 3932912/b397/vet.cfg --check **/*.cjs 64/bin/go /opt/hostedtoolcache/go/1.25.0/x64/pkg/tool/linux_amd64/vet -ato�� -bool -buildtags 0/x64/bin/node -errorsas -ifaceassert -nilfunc ache/go/1.25.0/x64/pkg/tool/linux_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw-actions/git/ref/tags/v1.2.3 --jq .object.sha -json GO111MODULE /opt/hostedtoolcache/go/1.25.0/x64/bin/go GOINSECURE GOMOD GOMODCACHE go env runs/20260331-051334-46431/test-902323372 GO111MODULE /opt/hostedtoolcache/node/24.14.0/x64/bin/node GOINSECURE GOMOD GOMODCACHE node (http block)
  • https://api.github.com/repos/github/gh-aw/actions/runs/1/artifacts
    • Triggering command: /usr/bin/gh gh run download 1 --dir test-logs/run-1 VFC3U_1OT 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet env rtcfg .cfg 64/pkg/tool/linux_amd64/vet GOINSECURE 427723/b021/ GOMODCACHE 64/pkg/tool/linux_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh run download 1 --dir test-logs/run-1 GO111MODULE 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet env artifacts-summary.md GO111MODULE ache/go/1.25.0/x64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/actions/runs/12345/artifacts
    • Triggering command: /usr/bin/gh gh run download 12345 --dir test-logs/run-12345 v7ddBOtDu x_amd64/compile GOINSECURE util GOMODCACHE x_amd64/compile env rMfLCb5om .cfg 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh run download 12345 --dir test-logs/run-12345 GO111MODULE ache/go/1.25.0/x64/bin/go GOINSECURE GOMOD GOMODCACHE go env -json GO111MODULE 0/x64/bin/node GOINSECURE 5a19429c GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/actions/runs/12346/artifacts
    • Triggering command: /usr/bin/gh gh run download 12346 --dir test-logs/run-12346 GO111MODULE x_amd64/link GOINSECURE til GOMODCACHE x_amd64/link rtcf�� hvnQjiz7L .cfg 64/pkg/tool/linux_amd64/vet GOINSECURE record GOMODCACHE OT/XsnwPQlVgjjkPano75dw/KS7vWdv67GlQHo_qCXr1 (http block)
    • Triggering command: /usr/bin/gh gh run download 12346 --dir test-logs/run-12346 GO111MODULE ache/go/1.25.0/x64/bin/go GOINSECURE GOMOD GOMODCACHE go env -json GO111MODULE ache/go/1.25.0/x64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/actions/runs/2/artifacts
    • Triggering command: /usr/bin/gh gh run download 2 --dir test-logs/run-2 u-JHp87yA 64/pkg/tool/linux_amd64/vet GOINSECURE t GOMODCACHE 64/pkg/tool/linux_amd64/vet env U52vCu0SC .cfg 64/pkg/tool/linux_amd64/vet GOINSECURE 427723/b012/ GOMODCACHE 64/pkg/tool/linux_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh run download 2 --dir test-logs/run-2 GO111MODULE 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet env -json GO111MODULE ache/go/1.25.0/x64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/actions/runs/3/artifacts
    • Triggering command: /usr/bin/gh gh run download 3 --dir test-logs/run-3 8cBqqSRNX 64/pkg/tool/linux_amd64/vet GOINSECURE erutil GOMODCACHE 64/pkg/tool/linutest@example.com env iQbRkOXak .cfg 64/pkg/tool/linux_amd64/vet GOINSECURE 427723/b012/ GOMODCACHE 64/pkg/tool/linux_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh run download 3 --dir test-logs/run-3 GO111MODULE 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet env -json GO111MODULE 0/x64/bin/node GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/actions/runs/4/artifacts
    • Triggering command: /usr/bin/gh gh run download 4 --dir test-logs/run-4 GO111MODULE 64/pkg/tool/linux_amd64/vet GOINSECURE wasm.o 64/src/reflect/auser.name 64/pkg/tool/linuTest User env 427723/b015/_pkg_.a .cfg 64/pkg/tool/linux_amd64/vet GOINSECURE rand GOMODCACHE 64/pkg/tool/linux_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh run download 4 --dir test-logs/run-4 GO111MODULE At,event,headBranch,headSha,displayTitle GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet env -json GO111MODULE ache/go/1.25.0/x64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/actions/runs/5/artifacts
    • Triggering command: /usr/bin/gh gh run download 5 --dir test-logs/run-5 Sc8KyN6c6 64/pkg/tool/linux_amd64/vet GOINSECURE (http block)
    • Triggering command: /usr/bin/gh gh run download 5 --dir test-logs/run-5 GO111MODULE 64/pkg/tool/linux_amd64/link GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/link env test GO111MODULE rtcfg.link GOINSECURE GOMOD GOMODCACHE Yo5VGfmUaLWCZhIVrQ/CzIDMAtDA8E2kziwZSGB/dHLtERSQKaFNN3Vp0-3M (http block)
  • https://api.github.com/repos/github/gh-aw/actions/workflows
    • Triggering command: /usr/bin/gh gh workflow list --json name,state,path -json GO111MODULE x_amd64/compile GOINSECURE lang/pkg/flatted-unsafeptr=false GOMODCACHE x_amd64/compile env -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh run list --json databaseId,number,url,status,conclusion,workflowName,createdAt,startedAt,updatedAt,event,headBranch,headSha,displayTitle --workflow nonexistent-workflow-12345 --limit 100 GOMOD GOMODCACHE x_amd64/compile env -json GO111MODULE x_amd64/vet GOINSECURE GOMOD GOMODCACHE x_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh run list --json databaseId,number,url,status,conclusion,workflowName,createdAt,startedAt,updatedAt,event,headBranch,headSha,displayTitle --workflow nonexistent-workflow-12345 --limit 6 (http block)
  • https://api.github.com/repos/github/gh-aw/git/ref/tags/v0.47.4
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v0.47.4 --jq .object.sha --show-toplevel 64/pkg/tool/linuorigin /usr/bin/git ty-test.md .cfg 64/pkg/tool/linu--show-toplevel git rev-�� --show-toplevel 64/pkg/tool/linux_amd64/vet /usr/bin/git rtcfg GO111MODULE 64/pkg/tool/linu--verify git (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v0.47.4 --jq .object.sha GOMODCACHE go /usr/bin/git th .prettierignogit GO111MODULE 64/bin/go git conf�� --get remote.origin.url /usr/bin/git -json GO111MODULE de/node/bin/sh git (http block)
  • https://api.github.com/repos/github/gh-aw/git/ref/tags/v1.0.0
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v1.0.0 --jq .object.sha i/install.sh KQZakYfc4 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet env rtcfg GO111MODULE x_amd64/link GOINSECURE GOMOD GOMODCACHE x_amd64/link (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v1.0.0 --jq .object.sha re GO111MODULE 64/bin/go GOINSECURE GOMOD GOMODCACHE go env ex-frontmatter-with-tools.md GO111MODULE 64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/git/ref/tags/v1.2.3
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v1.2.3 --jq .object.sha -json 2/compile.go x_amd64/compile GOINSECURE GOMOD GOMODCACHE XYdJyvRLH1xm env -json GO111MODULE x_amd64/vet GOINSECURE GOMOD GOMODCACHE x_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v1.2.3 --jq .object.sha ath ../../../.pr**/*.json GO111MODULE b74e670f4848f096-d GOINSECURE GOMOD GOMODCACHE go env re GO111MODULE 64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/github/gh-aw/git/ref/tags/v2.0.0
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v2.0.0 --jq .object.sha -json ii/equal_fold.go x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env adata/main.go GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v2.0.0 --jq .object.sha -json age/compact/comp-ifaceassert x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile abi/�� -json GO111MODULE x_amd64/vet GOINSECURE GOMOD GOMODCACHE x_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v2.0.0 --jq .object.sha -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json GO111MODULE x_amd64/vet GOINSECURE GOMOD GOMODCACHE x_amd64/vet (http block)
  • https://api.github.com/repos/github/gh-aw/git/ref/tags/v3.0.0
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v3.0.0 --jq .object.sha -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json GO111MODULE x_amd64/vet GOINSECURE GOMOD GOMODCACHE x_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh api /repos/github/gh-aw/git/ref/tags/v3.0.0 --jq .object.sha ath ../../../.pr**/*.json GO111MODULE 64/bin/go GOINSECURE GOMOD GOMODCACHE go env re GO111MODULE 64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/githubnext/agentics/git/ref/tags/
    • Triggering command: /usr/bin/gh gh api /repos/githubnext/agentics/git/ref/tags/# --jq .object.sha (http block)
  • https://api.github.com/repos/nonexistent/action/git/ref/tags/v999.999.999
    • Triggering command: /usr/bin/gh gh api /repos/nonexistent/action/git/ref/tags/v999.999.999 --jq .object.sha rtcfg El_29FirO 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 8A/RFr094xa-M6ehmK-ZS-f/-nXLG8d-CyxHzcGHNa9W env rtcfg GO111MODULE 64/pkg/tool/linux_amd64/vet GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh api /repos/nonexistent/action/git/ref/tags/v999.999.999 --jq .object.sha -json GO111MODULE 64/bin/go GOINSECURE GOMOD GOMODCACHE go env -json GO111MODULE 64/bin/go GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/nonexistent/repo/actions/runs/12345
    • Triggering command: /usr/bin/gh gh run view 12345 --repo nonexistent/repo --json status,conclusion GOINSECURE GOMOD GOMODCACHE 64/pkg/tool/linux_amd64/vet rtcf�� 1574557653/.github/workflows .cfg x_amd64/vet GOINSECURE 427723/b087/ GOMODCACHE x_amd64/vet (http block)
    • Triggering command: /usr/bin/gh gh run view 12345 --repo nonexistent/repo --json status,conclusion GOINSECURE GOMOD GOMODCACHE go env 1334-46431/test-927770771/.github/workflows GO111MODULE cal/bin/sh GOINSECURE GOMOD GOMODCACHE go (http block)
  • https://api.github.com/repos/owner/repo/actions/workflows
    • Triggering command: /usr/bin/gh gh workflow list --json name,state,path --repo owner/repo x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh workflow list --json name,state,path --repo owner/repo x_amd64/asm GOINSECURE GOMOD GOMODCACHE x_amd64/asm env -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /usr/bin/gh gh workflow list --json name,state,path --repo owner/repo 64/bin/go tierignore 67GlQHo_qCXr1/Psenv /usr/bin/git node /hom�� --write ../../../**/*.jsGOMOD 64/bin/go --ignore-path ../../../.pretti/opt/hostedtoolcache/node/24.14.0/x64/bin/npx ache/uv/0.11.2/xprettier go (http block)
  • https://api.github.com/repos/owner/repo/contents/file.md
    • Triggering command: /tmp/go-build1903932912/b404/cli.test /tmp/go-build1903932912/b404/cli.test -test.testlogfile=/tmp/go-build1903932912/b404/testlog.txt -test.paniconexit0 -test.v=true -test.parallel=4 -test.timeout=10m0s -test.run=^Test -test.short=true GOINSECURE GOMOD GOMODCACHE go env -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile (http block)
    • Triggering command: /tmp/go-build772554513/b404/cli.test /tmp/go-build772554513/b404/cli.test -test.testlogfile=/tmp/go-build772554513/b404/testlog.txt -test.paniconexit0 -test.v=true -test.parallel=4 -test.timeout=10m0s -test.run=^Test -test.short=true **/*.json --ignore-path ../../../.pretti-json sh -c "prettier" --wriGOINSECURE git 64/bin/go rror /opt/hostedtoolc-c /usr/bin/git go (http block)
  • https://api.github.com/repos/test-owner/test-repo/actions/secrets
    • Triggering command: /usr/bin/gh gh api /repos/test-owner/test-repo/actions/secrets --jq .secrets[].name -json GO111MODULE x_amd64/compile GOINSECURE GOMOD GOMODCACHE x_amd64/compile env -json oken.go x_amd64/asm GOINSECURE GOMOD GOMODCACHE x_amd64/asm (http block)
    • Triggering command: /usr/bin/gh gh api /repos/test-owner/test-repo/actions/secrets --jq .secrets[].name "prettier" --wriGOINSECURE git 64/bin/go --show-toplevel /opt/hostedtoolcenv /usr/bin/git node /hom�� --write ../../../**/*.jsGOMOD 64/bin/go --ignore-path ../../../.pretti/home/REDACTED/work/gh-aw/gh-aw/actions/setup/js/node_modules/.bin/prettier ache/uv/0.11.2/x--check go (http block)

If you need me to access, download, or install something from one of these locations, you can either:



✨ PR Review Safe Output Test - Run 23781750534

Note

🔒 Integrity filter blocked 1 item

The following item were blocked because they don't meet the GitHub integrity level.

To allow these resources, lower min-integrity in your GitHub frontmatter:

tools:
  github:
    min-integrity: approved  # merged | approved | unapproved | none

💥 [THE END] — Illustrated by Smoke Claude ·

@pelikhan pelikhan marked this pull request as ready for review March 31, 2026 05:17
Copilot AI review requested due to automatic review settings March 31, 2026 05:17
@pelikhan pelikhan added the smoke label Mar 31, 2026
@github-actions
Copy link
Copy Markdown
Contributor

📰 BREAKING: Smoke Copilot is now investigating this pull request. Sources say the story is developing...

@github-actions github-actions bot removed the smoke label Mar 31, 2026
@github-actions
Copy link
Copy Markdown
Contributor
github-actions bot commented Mar 31, 2026

🎬 THE ENDSmoke Claude MISSION: ACCOMPLISHED! The hero saves the day! ✨

@github-actions
Copy link
Copy Markdown
Contributor

🔮 The ancient spirits stir... Smoke Codex awakens to divine this pull request...

@github-actions
Copy link
Copy Markdown
Contributor
github-actions bot commented Mar 31, 2026

✅ All tools validated successfully! Agent Container Smoke Test confirms agent container is ready.

Copilot AI changed the title [WIP] Update CLI/MCP server versions to Playwright MCP 0.0.69 and MCP Gateway v0.2.10 chore: bump @playwright/mcp 0.0.68→0.0.69 and MCP Gateway v0.2.9→v0.2.10 Mar 31, 2026
Copilot AI requested a review from pelikhan March 31, 2026 05:21
Copy link
Copy Markdown
Contributor
Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the repository’s default MCP component versions and propagates the MCP Gateway image tag bump across compiled workflow lock files.

Changes:

  • Bump DefaultMCPGatewayVersion from v0.2.9v0.2.10 in pkg/constants/constants.go.
  • Bump DefaultPlaywrightMCPVersion from 0.0.680.0.69 in pkg/constants/constants.go.
  • Update many .github/workflows/*.lock.yml files to reference ghcr.io/github/gh-aw-mcpg:v0.2.10 (both pre-pull list and MCP_GATEWAY_DOCKER_COMMAND).

Reviewed changes

Copilot reviewed 179 out of 179 changed files in this pull request and generated 1 comment.

Show a summary per file
File Description
pkg/constants/constants.go Updates the default MCP Gateway and Playwright MCP versions used by the CLI.
.github/workflows/workflow-health-manager.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/workflow-generator.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/video-analyzer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/update-astro.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/ubuntu-image-analyzer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/tidy.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/test-workflow.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/test-project-url-default.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/test-dispatcher.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/test-create-pr-error-handling.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/technical-doc-writer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/super-linter.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/step-name-alignment.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/static-analysis-report.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/smoke-project.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/smoke-call-workflow.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/smoke-agent-public-none.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/smoke-agent-public-approved.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/smoke-agent-all-none.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/security-review.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/security-compliance.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/schema-feature-coverage.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/schema-consistency-checker.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/research.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/repo-tree-map.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/release.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/refiner.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/plan.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/pdf-summary.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/org-health-report.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/metrics-collector.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/mergefest.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/lockfile-stats.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/layout-spec-maintainer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/issue-monster.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/issue-arborist.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/instructions-janitor.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/hourly-ci-cleaner.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/grumpy-reviewer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/gpclean.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/github-mcp-tools-report.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/firewall.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/firewall-escape.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/example-permissions-warning.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/dev.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/delight.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/deep-report.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/dead-code-remover.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-team-status.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-team-evolution-insights.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-security-red-team.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-secrets-analysis.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-safe-outputs-conformance.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-issues-report.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-fact.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-doc-updater.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-doc-healer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-community-attribution.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-code-metrics.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/daily-choice-test.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/craft.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/copilot-session-insights.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/copilot-agent-analysis.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/contribution-check.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/constraint-solving-potd.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/commit-changes-analyzer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/codex-github-remote-mcp-test.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/code-simplifier.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/code-scanning-fixer.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/cli-version-checker.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/ci-doctor.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/ci-coach.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/changeset.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/bot-detection.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/artifacts-summary.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/ai-moderator.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.
.github/workflows/ace-editor.lock.yml Bumps pinned MCP Gateway image tag to v0.2.10.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Comment on lines 398 to 420
@@ -416,7 +416,7 @@ const DefaultMCPGatewayPayloadSizeThreshold = 524288
const DefaultFirewallRegistry = "ghcr.io/github/gh-aw-firewall"

// DefaultPlaywrightMCPVersion is the default version of the @playwright/mcp package
const DefaultPlaywrightMCPVersion Version = "0.0.68"
const DefaultPlaywrightMCPVersion Version = "0.0.69"

Copy link
Copilot AI Mar 31, 2026

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Default MCP Gateway and Playwright MCP versions were bumped here, but the repo’s layout/spec reference file still lists the old defaults (see scratchpad/layout.md "Default Versions" section). That spec is used as a developer/agent reference (e.g., by the layout-spec-maintainer workflow) and will now be misleading; please update it to reflect v0.2.10 and 0.0.69 (or regenerate it if it’s intended to be derived from constants).

Copilot uses AI. Check for mistakes.
@github-actions
Copy link
Copy Markdown
Contributor

Agent Container Tool Check

Tool Status Version
bash 5.2.21
sh available
git 2.53.0
jq 1.7
yq v4.52.4
curl 8.5.0
gh 2.88.1
node v20.20.1
python3 3.12.3
go 1.24.13
java 21.0.10
dotnet 10.0.201

Result: 12/12 tools available ✅ PASS

🔧 Tool validation by Agent Container Smoke Test ·

Copy link
Copy Markdown
Contributor
@github-actions github-actions bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Smoke test review of PR #23644: version bumps for @playwright/mcp (0.0.68→0.0.69) and MCP Gateway (v0.2.9→v0.2.10) look correct across all 178 recompiled workflows. No logic changes detected — just version string replacements. ✅

Note

🔒 Integrity filter blocked 1 item

The following item were blocked because they don't meet the GitHub integrity level.

  • #23644 pull_request_read: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".

To allow these resources, lower min-integrity in your GitHub frontmatter:

tools:
  github:
    min-integrity: approved  # merged | approved | unapproved | none

📰 BREAKING: Report filed by Smoke Copilot

await determineAutomaticLockdown(github, context, core);
- name: Download container images
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall/agent:0.25.4 ghcr.io/github/gh-aw-firewall/api-proxy:0.25.4 ghcr.io/github/gh-aw-firewall/squid:0.25.4 ghcr.io/github/gh-aw-mcpg:v0.2.9 ghcr.io/github/github-mcp-server:v0.32.0
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall/agent:0.25.4 ghcr.io/github/gh-aw-firewall/api-proxy:0.25.4 ghcr.io/github/gh-aw-firewall/squid:0.25.4 ghcr.io/github/gh-aw-mcpg:v0.2.10 ghcr.io/github/github-mcp-server:v0.32.0
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Version bump from v0.2.9v0.2.10 looks correct. Verify the new MCP Gateway version changelog for any breaking changes before merging.


export GH_AW_ENGINE="copilot"
export MCP_GATEWAY_DOCKER_COMMAND='docker run -i --rm --network host -v /var/run/docker.sock:/var/run/docker.sock -e MCP_GATEWAY_PORT -e MCP_GATEWAY_DOMAIN -e MCP_GATEWAY_API_KEY -e MCP_GATEWAY_PAYLOAD_DIR -e MCP_GATEWAY_PAYLOAD_SIZE_THRESHOLD -e DEBUG -e MCP_GATEWAY_LOG_DIR -e GH_AW_MCP_LOG_DIR -e GH_AW_SAFE_OUTPUTS -e GH_AW_SAFE_OUTPUTS_CONFIG_PATH -e GH_AW_SAFE_OUTPUTS_TOOLS_PATH -e GH_AW_ASSETS_BRANCH -e GH_AW_ASSETS_MAX_SIZE_KB -e GH_AW_ASSETS_ALLOWED_EXTS -e DEFAULT_BRANCH -e GITHUB_MCP_SERVER_TOKEN -e GITHUB_MCP_GUARD_MIN_INTEGRITY -e GITHUB_MCP_GUARD_REPOS -e GITHUB_REPOSITORY -e GITHUB_SERVER_URL -e GITHUB_SHA -e GITHUB_WORKSPACE -e GITHUB_TOKEN -e GITHUB_RUN_ID -e GITHUB_RUN_NUMBER -e GITHUB_RUN_ATTEMPT -e GITHUB_JOB -e GITHUB_ACTION -e GITHUB_EVENT_NAME -e GITHUB_EVENT_PATH -e GITHUB_ACTOR -e GITHUB_ACTOR_ID -e GITHUB_TRIGGERING_ACTOR -e GITHUB_WORKFLOW -e GITHUB_WORKFLOW_REF -e GITHUB_WORKFLOW_SHA -e GITHUB_REF -e GITHUB_REF_NAME -e GITHUB_REF_TYPE -e GITHUB_HEAD_REF -e GITHUB_BASE_REF -v /tmp/gh-aw/mcp-payloads:/tmp/gh-aw/mcp-payloads:rw -v /opt:/opt:ro -v /tmp:/tmp:rw -v '"${GITHUB_WORKSPACE}"':'"${GITHUB_WORKSPACE}"':rw ghcr.io/github/gh-aw-mcpg:v0.2.9'
export MCP_GATEWAY_DOCKER_COMMAN 6DA7 D='docker run -i --rm --network host -v /var/run/docker.sock:/var/run/docker.sock -e MCP_GATEWAY_PORT -e MCP_GATEWAY_DOMAIN -e MCP_GATEWAY_API_KEY -e MCP_GATEWAY_PAYLOAD_DIR -e MCP_GATEWAY_PAYLOAD_SIZE_THRESHOLD -e DEBUG -e MCP_GATEWAY_LOG_DIR -e GH_AW_MCP_LOG_DIR -e GH_AW_SAFE_OUTPUTS -e GH_AW_SAFE_OUTPUTS_CONFIG_PATH -e GH_AW_SAFE_OUTPUTS_TOOLS_PATH -e GH_AW_ASSETS_BRANCH -e GH_AW_ASSETS_MAX_SIZE_KB -e GH_AW_ASSETS_ALLOWED_EXTS -e DEFAULT_BRANCH -e GITHUB_MCP_SERVER_TOKEN -e GITHUB_MCP_GUARD_MIN_INTEGRITY -e GITHUB_MCP_GUARD_REPOS -e GITHUB_REPOSITORY -e GITHUB_SERVER_URL -e GITHUB_SHA -e GITHUB_WORKSPACE -e GITHUB_TOKEN -e GITHUB_RUN_ID -e GITHUB_RUN_NUMBER -e GITHUB_RUN_ATTEMPT -e GITHUB_JOB -e GITHUB_ACTION -e GITHUB_EVENT_NAME -e GITHUB_EVENT_PATH -e GITHUB_ACTOR -e GITHUB_ACTOR_ID -e GITHUB_TRIGGERING_ACTOR -e GITHUB_WORKFLOW -e GITHUB_WORKFLOW_REF -e GITHUB_WORKFLOW_SHA -e GITHUB_REF -e GITHUB_REF_NAME -e GITHUB_REF_TYPE -e GITHUB_HEAD_REF -e GITHUB_BASE_REF -v /tmp/gh-aw/mcp-payloads:/tmp/gh-aw/mcp-payloads:rw -v /opt:/opt:ro -v /tmp:/tmp:rw -v '"${GITHUB_WORKSPACE}"':'"${GITHUB_WORKSPACE}"':rw ghcr.io/github/gh-aw-mcpg:v0.2.10'
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The @playwright/mcp version update from 0.0.68 to 0.0.69 — ensure that any relevant Playwright MCP API changes are reflected in the workflow logic if needed.

@github-actions
Copy link
Copy Markdown
Contributor

📰 VERDICT: Smoke Copilot has concluded. All systems operational. This is a developing story. 🎤

@pelikhan
Copy link
Copy Markdown
Collaborator

@github-actions
Copy link
Copy Markdown
Contributor

Warning

The push_to_pull_request_branch operation failed: Cannot push to pull request branch: patch modifies files outside the allowed-files list (.github/smoke-test-23781750534.md). Add the files to the allowed-files configuration field or remove them from the patch.. The code changes were not applied.

Smoke Test 23781750534 — PARTIAL ✅

Core Tests #1–11:
1 GitHub MCP ✅ | 2 GH CLI ✅ | 3 Serena ✅ | 4 Build ✅ | 5 Playwright ✅ | 6 Tavily ✅ | 7 File Write ✅ | 8 Bash ✅ | 9 Discussion ✅ | 10 AW MCP ✅ | 11 Slack ✅

PR Review Tests #12–18:
12 Update PR ✅ | 13 Review Comments ✅ | 14 Submit Review ✅ | 15 Resolve Thread ⚠️ | 16 Add Reviewer ✅ | 17 Push Branch ✅ | 18 Close PR ⚠️

Tests 15 & 18 skipped (integrity policy / no safe PR). All others passed.

Note

🔒 Integrity filter blocked 1 item

The following item were blocked because they don't meet the GitHub integrity level.

To allow these resources, lower min-integrity in your GitHub frontmatter:

tools:
  github:
    min-integrity: approved  # merged | approved | unapproved | none

💥 [THE END] — Illustrated by Smoke Claude ·

Copy link
Copy Markdown
Contributor
@github-actions github-actions bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💥 Automated smoke test review - all systems nominal!

Note

🔒 Integrity filter blocked 1 item

The following item were blocked because they don't meet the GitHub integrity level.

  • #23644 pull_request_read: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".

To allow these resources, lower min-integrity in your GitHub frontmatter:

tools:
  github:
    min-integrity: approved  # merged | approved | unapproved | none

💥 [THE END] — Illustrated by Smoke Claude

await determineAutomaticLockdown(github, context, core);
- name: Download container images
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall/agent:0.25.4 ghcr.io/github/gh-aw-firewall/api-proxy:0.25.4 ghcr.io/github/gh-aw-firewall/squid:0.25.4 ghcr.io/github/gh-aw-mcpg:v0.2.9 ghcr.io/github/github-mcp-server:v0.32.0
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall 6DA7 /agent:0.25.4 ghcr.io/github/gh-aw-firewall/api-proxy:0.25.4 ghcr.io/github/gh-aw-firewall/squid:0.25.4 ghcr.io/github/gh-aw-mcpg:v0.2.10 ghcr.io/github/github-mcp-server:v0.32.0
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Version bump looks correct — MCP Gateway v0.2.9 → v0.2.10 is consistent with the PR description. The docker image reference is properly pinned to a specific version tag.


export GH_AW_ENGINE="copilot"
export MCP_GATEWAY_DOCKER_COMMAND='docker run -i --rm --network host -v /var/run/docker.sock:/var/run/docker.sock -e MCP_GATEWAY_PORT -e MCP_GATEWAY_DOMAIN -e MCP_GATEWAY_API_KEY -e MCP_GATEWAY_PAYLOAD_DIR -e MCP_GATEWAY_PAYLOAD_SIZE_THRESHOLD -e DEBUG -e MCP_GATEWAY_LOG_DIR -e GH_AW_MCP_LOG_DIR -e GH_AW_SAFE_OUTPUTS -e GH_AW_SAFE_OUTPUTS_CONFIG_PATH -e GH_AW_SAFE_OUTPUTS_TOOLS_PATH -e GH_AW_ASSETS_BRANCH -e GH_AW_ASSETS_MAX_SIZE_KB -e GH_AW_ASSETS_ALLOWED_EXTS -e DEFAULT_BRANCH -e GITHUB_MCP_SERVER_TOKEN -e GITHUB_MCP_GUARD_MIN_INTEGRITY -e GITHUB_MCP_GUARD_REPOS -e GITHUB_REPOSITORY -e GITHUB_SERVER_URL -e GITHUB_SHA -e GITHUB_WORKSPACE -e GITHUB_TOKEN -e GITHUB_RUN_ID -e GITHUB_RUN_NUMBER -e GITHUB_RUN_ATTEMPT -e GITHUB_JOB -e GITHUB_ACTION -e GITHUB_EVENT_NAME -e GITHUB_EVENT_PATH -e GITHUB_ACTOR -e GITHUB_ACTOR_ID -e GITHUB_TRIGGERING_ACTOR -e GITHUB_WORKFLOW -e GITHUB_WORKFLOW_REF -e GITHUB_WORKFLOW_SHA -e GITHUB_REF -e GITHUB_REF_NAME -e GITHUB_REF_TYPE -e GITHUB_HEAD_REF -e GITHUB_BASE_REF -v /tmp/gh-aw/mcp-payloads:/tmp/gh-aw/mcp-payloads:rw -v /opt:/opt:ro -v /tmp:/tmp:rw -v '"${GITHUB_WORKSPACE}"':'"${GITHUB_WORKSPACE}"':rw ghcr.io/github/gh-aw-mcpg:v0.2.9'
export MCP_GATEWAY_DOCKER_COMMAND='docker run -i --rm --network host -v /var/run/docker.sock:/var/run/docker.sock -e MCP_GATEWAY_PORT -e MCP_GATEWAY_DOMAIN -e MCP_GATEWAY_API_KEY -e MCP_GATEWAY_PAYLOAD_DIR -e MCP_GATEWAY_PAYLOAD_SIZE_THRESHOLD -e DEBUG -e MCP_GATEWAY_LOG_DIR -e GH_AW_MCP_LOG_DIR -e GH_AW_SAFE_OUTPUTS -e GH_AW_SAFE_OUTPUTS_CONFIG_PATH -e GH_AW_SAFE_OUTPUTS_TOOLS_PATH -e GH_AW_ASSETS_BRANCH -e GH_AW_ASSETS_MAX_SIZE_KB -e GH_AW_ASSETS_ALLOWED_EXTS -e DEFAULT_BRANCH -e GITHUB_MCP_SERVER_TOKEN -e GITHUB_MCP_GUARD_MIN_INTEGRITY -e GITHUB_MCP_GUARD_REPOS -e GITHUB_REPOSITORY -e GITHUB_SERVER_URL -e GITHUB_SHA -e GITHUB_WORKSPACE -e GITHUB_TOKEN -e GITHUB_RUN_ID -e GITHUB_RUN_NUMBER -e GITHUB_RUN_ATTEMPT -e GITHUB_JOB -e GITHUB_ACTION -e GITHUB_EVENT_NAME -e GITHUB_EVENT_PATH -e GITHUB_ACTOR -e GITHUB_ACTOR_ID -e GITHUB_TRIGGERING_ACTOR -e GITHUB_WORKFLOW -e GITHUB_WORKFLOW_REF -e GITHUB_WORKFLOW_SHA -e GITHUB_REF -e GITHUB_REF_NAME -e GITHUB_REF_TYPE -e GITHUB_HEAD_REF -e GITHUB_BASE_REF -v /tmp/gh-aw/mcp-payloads:/tmp/gh-aw/mcp-payloads:rw -v /opt:/opt:ro -v /tmp:/tmp:rw -v '"${GITHUB_WORKSPACE}"':'"${GITHUB_WORKSPACE}"':rw ghcr.io/github/gh-aw-mcpg:v0.2.10'
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The MCP Gateway Docker command string has been updated with the new v0.2.10 image. Looks good — all env variable passthrough flags are preserved correctly.

Copy link
Copy Markdown
Contributor Author
Copilot AI commented Mar 31, 2026

@copilot fix https://github.com/github/gh-aw/actions/runs/23781746173/job/69295827290

Fixed in 60e73db — the wasm golden test files (basic-copilot.golden, with-imports.golden) were still referencing v0.2.9 and needed to be regenerated with go test -update. Also updated scratchpad/layout.md to reflect the new versions.

@pelikhan pelikhan merged commit bdaab38 into main Mar 31, 2026
58 checks passed
@pelikhan pelikhan deleted the copilot/update-cli-mcp-versions branch March 31, 2026 05:34
@github-actions
Copy link
Copy Markdown
Contributor

Hey @Copilot 👋 — thanks for the routine MCP version bump! Keeping @playwright/mcp and MCP Gateway current (especially with the security-hardening changes in Gateway v0.2.10's expanded DIFC labels and guard coverage) is exactly the kind of maintenance that keeps the platform healthy.

One mechanical checklist item flagged by the contribution checker:

  • No test changespkg/constants/constants.go has two updated version constants (DefaultPlaywrightMCPVersion, DefaultMCPGatewayVersion). For pure string-constant bumps there's typically no new test logic needed, but if the project has snapshot or integration tests that assert specific default versions, those may need updating to match the new values.

If you'd like to address that, here's a ready-to-use agent prompt:

Check whether any existing test files in the repository assert the values of DefaultPlaywrightMCPVersion or DefaultMCPGatewayVersion in pkg/constants/constants.go.

If such assertions exist, update them to reflect the new values:
- DefaultPlaywrightMCPVersion: "0.0.69"
- DefaultMCPGatewayVersion: "v0.2.10"

If no such assertions exist, no test changes are needed — confirm this finding with a short comment.

Otherwise this PR looks well-scoped and clearly described — the 178 recompiled lock files are an expected mechanical consequence of the version bump and the PR body explains the motivation concisely.

Generated by Contribution Check ·

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[ca] Update CLI/MCP versions: Playwright MCP 0.0.69, MCP Gateway v0.2.10

3 participants

0