Skip to content

v0.89.22

Pre-release
Pre-release

Choose a tag to compare

@github-actions github-actions released this 27 Sep 01:06
· 2 commits to main since this release
Immutable release. Only release title and notes can be modified.
60480ba

🌟 Release Highlights

This release strengthens firewall/network security policy for hosted-web tools, removes deprecated sandbox runtimes in favor of Cloud Hypervisor, and adds new audit and observability capabilities.

⚠️ Breaking Changes

  • Docker sbx and gVisor sandbox runtimes removed (#63034) β€” isolated execution now runs exclusively on Cloud Hypervisor. If your workflow frontmatter sets sandbox.agent.runtime: docker-sbx or gvisor, update it to:
    sandbox:
      agent:
        runtime: cloud-hypervisor

✨ What's New

  • Hosted-web domain policies in frontmatter (#63212) β€” adds network.hosted-web so you can allow/block domains that provider-hosted Claude and Codex web tools reach outside AWF's network boundary. See Network Configuration.
  • Enforced firewall compatibility for Copilot and web tools (#63474) and scoped Copilot firewall validation to enabled web tools (#63632) β€” tighter, more accurate network guardrails.
  • Grouped audit findings mode (#63032) β€” gh aw audit --group aggregates findings by run and code with occurrence counts, in pretty, markdown, or JSON output. See Audit Reference.
  • Opt-out for automatic audit baseline downloads (#63012) and MCP payload size reporting in audit (#63687) β€” more control and visibility into audit runs.
  • Repo-memory backend for daily AIC guardrail (#62958) β€” memory persistence now supports repository-backed storage.
  • Large Copilot prompts streamed through stdin (#62766, thanks @davidslater!) β€” prompts over 100 KiB are now delivered to Copilot via stdin instead of being truncated/replaced, preserving full context.
  • Custom safe-outputs jobs can declare agent-job artifact dependencies (#63017) β€” more flexible custom safe-output job wiring.

πŸ› Bug Fixes & Improvements

  • Prevented false blocked-domain warnings for successful firewall requests (#63246).
  • Fixed dangling safe-outputs-app-token reference when safe outputs are staged (#63490).
  • Fixed workflow-call SARIF artifact dependency (#63495).
  • Fixed repo memory retry head refresh authentication (#63497) and prevented cache-memory validation marker EACCES failures (#63498).
  • Pinned pull_request activation checkout to base SHA for improved supply-chain safety (#63499).
  • Prevented empty grouped failure parent issues (#63015) and scoped forked-repository checkout guard to PR replays (#63011).
  • Honored container image overrides in threat-detection jobs (#63014).
  • Made dev-mode actions folder checkout shallow (#63035) and routed upgrade compilation through full post-processing (#63043).
  • Improved detection and diagnostics for missing Copilot custom agent (#63048).
  • Fixed slash-command PR prefetch caching and error handling (#63678).

πŸ“š Documentation

  • Unbloated the FAQ, setup CLI guide, and GitHub Actions primer for clarity (#63061, #63312, #63530).
  • Documented missing gh aw logs flags (#63696).

Generated by πŸš€ Release Β· copilot Β· auto Β· 28.9 AIC Β· ⊞ 11.5K


What's Changed

  • safe-outputs: trust scanned repositories in the find_repo_checkout git-scan fallback by @pelikhan with @Copilot in #62944
  • Prevent empty grouped failure parent issues by @pelikhan with @Copilot in #63015
  • Make dev-mode actions folder checkout shallow by @pelikhan with @Copilot in #63035
  • Add repo-memory backend for daily AIC guardrail by @pelikhan with @Copilot in #62958
  • Add opt-out for automatic audit baseline downloads by @pelikhan with @Copilot in #63012
  • Honor container image overrides in threat-detection jobs by @pelikhan with @Copilot in #63014
  • Stream large Copilot prompts through stdin by @davidslater in #62766
  • Remove Docker sbx and gVisor sandbox runtimes by @pelikhan with @Copilot in #63034
  • Let custom safe-outputs jobs declare agent-job artifact paths they depend on by @pelikhan with @Copilot in #63017
  • Add grouped audit findings mode by @pelikhan with @Copilot in #63032
  • [docs] Self-healing documentation fixes from issue analysis - 2026-09-23 by @github-actions[bot] in #63052
  • Route upgrade compilation through full post-processing by @pelikhan with @Copilot in #63043
  • [docs] docs: unbloat FAQ answers by @github-actions[bot] in #63061
  • [ubuntu-image] Update Ubuntu Actions runner image analysis to 20260920.314.1 by @github-actions[bot] in #63086
  • Improve detection and diagnostics for missing Copilot custom agent by @pelikhan with @Copilot in #63048
  • [instructions] Sync instruction files with release v0.89.21 by @github-actions[bot] in #63142
  • [actions] Update GitHub Actions versions - 2026-09-24 by @github-actions[bot] in #63124
  • [docs] Update glossary - daily scan by @github-actions[bot] in #63153
  • Add A/B experiment for Copilot PR NLP prompt style by @pelikhan with @Copilot in #63159
  • [ci-coach] Speed up slow rate-limit sleep in cgo A-C unit-test shard by @github-actions[bot] in #63187
  • [blog] Agent of the Day – 2026-09-24 by @github-actions[bot] in #63194
  • Update gh-aw-mcpg to v0.4.26 and gh-aw-firewall to v0.28.25 by @lpcox with @Copilot in #63206
  • Filter logs to agentic workflows by @pelikhan with @Copilot in #63177
  • test: cover generated workflows in upgrade by @pelikhan with @Copilot in #63218
  • [WIP] Fix failing GitHub Actions job Integration: Workflow Misc Part 2 by @pelikhan with @Copilot in #63235
  • Prevent false blocked-domain warnings for successful firewall requests by @pelikhan with @Copilot in #63246
  • [docs] Self-healing documentation fixes from issue analysis - 2026-09-24 by @github-actions[bot] in #63267
  • Log optional runtime import misses as info by @pelikhan with @Copilot in #63316
  • [docs] docs: unbloat setup CLI guide by @github-actions[bot] in #63312
  • [docs] Update Astro dependencies - 2026-09-25 by @github-actions[bot] in #63330
  • Add hosted web domain policies to workflow frontmatter by @lpcox with @Copilot in #63212
  • [spec-extractor] Update package specifications for tty, types, typeutil, workflow by @github-actions[bot] in #63410
  • [instructions] Instructions Janitor: sync network.md with release v0.89.21 hosted-web policy by @github-actions[bot] in #63399
  • [actions] Update GitHub Actions versions - 2026-09-25 by @github-actions[bot] in #63385
  • [blog] Agent of the Day – 2026-09-25 by @github-actions[bot] in #63453
  • Scope forked-repository checkout guard to PR replays by @pelikhan with @Copilot in #63011
  • Fix workflow-call SARIF artifact dependency by @pelikhan with @Copilot in #63495
  • Honor Copilot web-search minimum when selecting cached CLI by @pelikhan with @Copilot in #63491
  • Fix dangling safe-outputs-app-token reference when safe outputs are staged by @pelikhan with @Copilot in #63490
  • Fix repo memory retry head refresh authentication by @pelikhan with @Copilot in #63497
  • Authorize allowlisted GitHub App actors on repository_dispatch by @pelikhan with @Copilot in #63492
  • [docs] docs: unbloat GitHub Actions primer by @github-actions[bot] in #63530
  • Set Pi gateway context window for Copilot Claude Sonnet 5 by @pelikhan with @Copilot in #63494
  • Tell engines without MCP that the safeoutputs CLI is the only transport by @pelikhan with @Copilot in #63493
  • Enforce firewall compatibility for Copilot and web tools by @pelikhan with @Copilot in #63474
  • Prevent cache-memory validation marker EACCES failures by @pelikhan with @Copilot in #63498
  • [docs] Update editor preview screenshots – 2026-09-26 by @github-actions[bot] in #63589
  • [spec-extractor] Update package specifications for agentdrain, cli, console, constants by @github-actions[bot] in #63601
  • [docs] Fix tone issues in scratchpad specs (2026-09-26 consolidation pass) by @github-actions[bot] in #63633
  • Pin pull_request activation checkout to base SHA by @pelikhan with @Copilot in #63499
  • Scope Copilot firewall validation to enabled web tools by @pelikhan with @Copilot in #63632
  • Surface AWF steering counters in compact audit usage data by @pelikhan with @Copilot in #63664
  • Add friction-cost attribution to audit and usage artifacts by @pelikhan with @Copilot in #63662
  • Fix slash-command PR prefetch caching and error handling by @pelikhan with @Copilot in #63678
  • Track skill usage in audit artifacts by @pelikhan with @Copilot in #63688
  • [docs] Document missing gh aw logs flags - 2026-09-26 by @github-actions[bot] in #63696
  • Report MCP payload sizes in audit and aggregate analysis by @pelikhan with @Copilot in #63687

Full Changelog: v0.89.21...v0.89.22