[uk ai resilience] UK AI Open Code Risk & Resilience Governance — 2026-06-26 #41750
Closed
Replies: 1 comment
-
|
This discussion was automatically closed because it expired on 2026-06-29T16:16:06.768Z.
|
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Repo: github/gh-aw | Lookback: 7d (2026-06-19→26) | Run: §28249997521
319 commits · 71 security-signal commits · 7 code-scanning alerts · 0 secret-scanning alerts · 13 open security issues
1. Executive Summary
Two areas are Tier C (Restricted Pending Review):
pkg/workflow/sandbox/— gh-aw-firewall v0.27.10 has a topology-attach deadlock and rootless artifact permission regression. v0.27.11 fix is available but not deployed (Bump default gh-aw-firewall version to v0.27.11 #41554).sandbox.agent.sudo: falseworkflows silently fail → AI network isolation guardrail is broken..github/workflows/—docker/build-push-action@v7.2.0unpinned ([Custom Engine Test] Test Issue Created by Custom Engine #625, 12+ days open). 302 comment-triggered RGS-004 findings. Large AI-agent-driven supply chain surface.No secret-scanning alerts. MTTR ~1–3 days. All commits PGP-verified.
2. Asset Graph (7-day scope)
pkg/workflow/sandbox/.github/workflows/scripts/safe-outputs/pkg/engine/pkg/cli/project_command.goscripts/JS toolingpkg/workflow/compiler.github/aw/Ownership: pelikhan (primary), lpcox (firewall/sandbox), dsyme (schema). Gap: #41746 (SOC-2 doc) unassigned.
3. AI-Aware Risk Scores
pkg/workflow/sandbox/.github/workflows/scripts/safe-outputs/pkg/engine/pkg/cli/project_command.goscripts/JS toolingpkg/workflow/compilerAI-specific multipliers: (1) network isolation bypass via firewall deadlock; (2) 302 comment-triggered workflows without author-auth amplify agentic blast radius; (3) engine API key exposure in
pkg/engine/; (4) safe-output bypass risk inscripts/safe-outputs/.4. Control Gaps
docker/build-push-action@v7.2.0; firewall 1 version behind5. Remediation Queue
DefaultFirewallVersion→v0.27.11;make build && make recompile && make recompile; refreshactions-lock.jsondocker/build-push-actionto full commit SHA inpublish-safe-outputs-node.yml:193ownerId/projectIdwithescapeGraphQLString()inproject_command.go:295,368$os.tmpdir()path withtmplibrary inprepare-objective-impact-safe-output-evaluations.cjs:34ensure-docs-slide-pdf.js:1306. Exception Register
No formal exceptions. By-design dispositions (all closed-issue tracked):
author_associationguard inpre_activationjobs7. Operational Metrics Baseline
Tier C Human Review Triggers: (1) Verify double-recompile SHA pins before deploying v0.27.11 +
sudo:falsesmoke tests; (2) Confirmdocker/build-push-actionSHA matches authentic v7.2.0 before pinning.References: §28249997521 · Alert #635 · Alert #625
Beta Was this translation helpful? Give feedback.
All reactions