Dependency Bumps
AWF → v0.25.57
https://github.com/github/gh-aw-firewall/releases/tag/v0.25.57
Highlights:
- fix(squid): increase healthcheck tolerance to prevent intermittent startup failures
- Narrow Squid module exports by internalizing helper functions
- Align docker-manager tests with source-module import contract
- Document AWF_DIND env var and ARC/DinD sibling-socket auto-detection
- Security-critical test coverage additions (excluded-vars, shell-utils, cli-workflow)
MCPG → v0.3.21
https://github.com/github/gh-aw-mcpg/releases/tag/v0.3.21
Highlights:
- Schema URL updated to v0.76.1
- Improve OTel trace signal quality: stack traces, route cardinality, rate-limit status, container metadata
- rust-guard: collapse duplicated match arms and add pre-emptive tool coverage
- Clarify logger fallback contract and add direct fallback-handler coverage
- Extract RecordSpanError helper to eliminate duplicate span error recording
- Add tests for server.enforceToolCallLimit and HMAC middleware
Checklist
Dependency Bumps
AWF → v0.25.57
https://github.com/github/gh-aw-firewall/releases/tag/v0.25.57
Highlights:
MCPG → v0.3.21
https://github.com/github/gh-aw-mcpg/releases/tag/v0.3.21
Highlights:
Checklist
gh aw compileto regenerate lock files