Skip to content

chore: bump awf to v0.25.57, mcpg to v0.3.21 #35781

@lpcox

Description

@lpcox

Dependency Bumps

AWF → v0.25.57

https://github.com/github/gh-aw-firewall/releases/tag/v0.25.57

Highlights:

  • fix(squid): increase healthcheck tolerance to prevent intermittent startup failures
  • Narrow Squid module exports by internalizing helper functions
  • Align docker-manager tests with source-module import contract
  • Document AWF_DIND env var and ARC/DinD sibling-socket auto-detection
  • Security-critical test coverage additions (excluded-vars, shell-utils, cli-workflow)

MCPG → v0.3.21

https://github.com/github/gh-aw-mcpg/releases/tag/v0.3.21

Highlights:

  • Schema URL updated to v0.76.1
  • Improve OTel trace signal quality: stack traces, route cardinality, rate-limit status, container metadata
  • rust-guard: collapse duplicated match arms and add pre-emptive tool coverage
  • Clarify logger fallback contract and add direct fallback-handler coverage
  • Extract RecordSpanError helper to eliminate duplicate span error recording
  • Add tests for server.enforceToolCallLimit and HMAC middleware

Checklist

  • Update awf version pin
  • Update mcpg version pin
  • Run gh aw compile to regenerate lock files
  • Verify smoke tests pass

Metadata

Metadata

Assignees

Labels

questionFurther information is requested

Type

No type
No fields configured for issues without a type.

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions