Skip to content

chore: upgrade gh-aw-mcpg to v0.2.1#22471

Merged
pelikhan merged 2 commits intomainfrom
copilot/upgrade-gh-aw-mcpg-latest-release
Mar 23, 2026
Merged

chore: upgrade gh-aw-mcpg to v0.2.1#22471
pelikhan merged 2 commits intomainfrom
copilot/upgrade-gh-aw-mcpg-latest-release

Conversation

Copy link
Copy Markdown
Contributor

Copilot AI commented Mar 23, 2026

Bumps ghcr.io/github/gh-aw-mcpg from v0.2.0 to v0.2.1.

Changes

  • pkg/constants/constants.go: Update DefaultMCPGatewayVersion to v0.2.1
  • 177 lock files: Recompiled to reflect new image tag

v0.2.1 highlights

  • copilot-swe-agent now recognized as trusted first-party bot (previously received none integrity, causing PRs to be filtered)
  • Commit GraphQL queries now inject author{user{login}} fields for trusted-bot detection on commit objects, extending coverage from issues/PRs to commits


✨ PR Review Safe Output Test - Run 23450628147

💥 [THE END] — Illustrated by Smoke Claude ·

Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
Agent-Logs-Url: https://github.com/github/gh-aw/sessions/5a4f64cf-17ce-4b73-9e22-e8bdc35e85b7
@pelikhan pelikhan marked this pull request as ready for review March 23, 2026 17:20
Copilot AI review requested due to automatic review settings March 23, 2026 17:20
@pelikhan pelikhan added the smoke label Mar 23, 2026
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Mar 23, 2026

✨ The prophecy is fulfilled... Smoke Codex has completed its mystical journey. The stars align. 🌟

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Mar 23, 2026

✅ All tools validated successfully! Agent Container Smoke Test confirms agent container is ready.

@github-actions
Copy link
Copy Markdown
Contributor

📰 BREAKING: Smoke Copilot is now investigating this pull request. Sources say the story is developing...

@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Mar 23, 2026

🎬 THE ENDSmoke Claude MISSION: ACCOMPLISHED! The hero saves the day! ✨

@github-actions
Copy link
Copy Markdown
Contributor

Agent Container Tool Check

Tool Status Version
bash 5.2.21
sh available
git 2.53.0
jq 1.7
yq v4.52.4
curl 8.5.0
gh 2.87.3
node v20.20.1
python3 3.12.3
go 1.24.13
java 21.0.10 (Temurin)
dotnet 10.0.102

Result: 12/12 tools available ✅

Overall Status: PASS

🔧 Tool validation by Agent Container Smoke Test ·

Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Upgrades the default ghcr.io/github/gh-aw-mcpg (MCP Gateway) container image from v0.2.0 to v0.2.1, and regenerates compiled workflow lock files so pinned image references are consistent.

Changes:

  • Bump DefaultMCPGatewayVersion to v0.2.1.
  • Regenerate workflow lockfiles to pin ghcr.io/github/gh-aw-mcpg:v0.2.1 in predownload steps and MCP gateway docker run commands.

Reviewed changes

Copilot reviewed 178 out of 178 changed files in this pull request and generated no comments.

Show a summary per file
File Description
pkg/constants/constants.go Bumps the default MCP Gateway image version to v0.2.1.
.github/workflows/workflow-health-manager.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/workflow-generator.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/video-analyzer.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/update-astro.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/ubuntu-image-analyzer.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/tidy.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/test-workflow.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/test-project-url-default.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/test-dispatcher.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/test-create-pr-error-handling.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/super-linter.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/step-name-alignment.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/static-analysis-report.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/smoke-test-tools.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/smoke-project.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/smoke-call-workflow.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/smoke-agent-public-none.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/smoke-agent-public-approved.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/smoke-agent-all-none.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/security-review.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/security-compliance.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/schema-feature-coverage.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/schema-consistency-checker.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/research.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/repo-tree-map.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/release.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/refiner.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/poem-bot.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/plan.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/pdf-summary.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/org-health-report.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/metrics-collector.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/mergefest.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/lockfile-stats.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/layout-spec-maintainer.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/issue-monster.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/issue-arborist.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/instructions-janitor.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/hourly-ci-cleaner.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/grumpy-reviewer.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/gpclean.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/github-mcp-tools-report.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/github-mcp-structural-analysis.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/firewall.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/firewall-escape.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/example-permissions-warning.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/draft-pr-cleanup.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/dev.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/delight.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/deep-report.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/dead-code-remover.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-team-status.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-team-evolution-insights.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-security-red-team.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-secrets-analysis.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-safe-outputs-conformance.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-issues-report.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-fact.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-community-attribution.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-code-metrics.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/daily-choice-test.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/craft.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/copilot-session-insights.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/copilot-agent-analysis.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/contribution-check.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/constraint-solving-potd.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/commit-changes-analyzer.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/codex-github-remote-mcp-test.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/code-simplifier.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/code-scanning-fixer.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/cli-version-checker.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/ci-doctor.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/ci-coach.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/changeset.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/bot-detection.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/artifacts-summary.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/ai-moderator.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.
.github/workflows/ace-editor.lock.yml Updates pinned gh-aw-mcpg image tag to v0.2.1 in image download + gateway run command.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Copy link
Copy Markdown
Contributor

@github-actions github-actions bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Smoke test review of PR #22471 (chore: upgrade gh-aw-mcpg to v0.2.1). Simple version bump across pkg/constants/constants.go and 177 recompiled lock files. The v0.2.1 integrity fix for copilot-swe-agent is a meaningful improvement.

📰 BREAKING: Report filed by Smoke Copilot


// DefaultMCPGatewayVersion is the default version of the MCP Gateway (gh-aw-mcpg) Docker image
const DefaultMCPGatewayVersion Version = "v0.2.0"
const DefaultMCPGatewayVersion Version = "v0.2.1"
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Version bump from v0.2.0 to v0.2.1 looks good. The fix for copilot-swe-agent receiving none integrity is particularly important for trusted-bot detection on PRs.

@github-actions
Copy link
Copy Markdown
Contributor

📰 VERDICT: Smoke Copilot has concluded. All systems operational. This is a developing story. 🎤

@github-actions
Copy link
Copy Markdown
Contributor

Smoke Test: Codex Engine Validation

Merged PRs: #22458 fix(cli): resolve 5 CLI consistency issues from automated inspection; #22465 chore: update github.com/securego/gosec/v2 from v2.24.7 to v2.25.0
GitHub MCP (2 merged PRs): ✅
Serena MCP (activate + >=3 symbols): ✅
Playwright (github.com title contains "GitHub"): ✅
Web Fetch (github.com contains "GitHub"): ✅
File write + cat verification: ✅
Build (GOCACHE=/tmp/go-cache GOMODCACHE=/tmp/go-mod make build): ✅
Overall status: PASS

Warning

⚠️ Firewall blocked 1 domain

The following domain was blocked by the firewall during workflow execution:

  • ab.chatgpt.com

To allow these domains, add them to the network.allowed list in your workflow frontmatter:

network:
  allowed:
    - defaults
    - "ab.chatgpt.com"

See Network Configuration for more information.

🔮 The oracle has spoken through Smoke Codex ·

@github-actions
Copy link
Copy Markdown
Contributor

Commit pushed: 28581c8

Generated by Changeset Generator

@github-actions
Copy link
Copy Markdown
Contributor

Smoke Test Run §23450628147 — PARTIAL

Test Result
1 GitHub MCP
2 GH CLI Scripts
3 Serena MCP
4 Make Build
5 Playwright
6 Tavily Search
7 File Write
8 Bash Tool
9 Discussion Comment
10 AW MCP Status
11 Slack Safe Output
12 Update PR
13 PR Review Comments
14 Submit Review
15 Resolve Thread ⚠️ skipped
16 Add Reviewer
17 Push to Branch
18 Close PR ⚠️ skipped

💥 [THE END] — Illustrated by Smoke Claude ·

Copy link
Copy Markdown
Contributor

@github-actions github-actions bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💥 Automated smoke test review - all systems nominal!

💥 [THE END] — Illustrated by Smoke Claude

await determineAutomaticLockdown(github, context, core);
- name: Download container images
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall/agent:0.24.5 ghcr.io/github/gh-aw-firewall/api-proxy:0.24.5 ghcr.io/github/gh-aw-firewall/squid:0.24.5 ghcr.io/github/gh-aw-mcpg:v0.2.0 ghcr.io/github/github-mcp-server:v0.32.0
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall/agent:0.24.5 ghcr.io/github/gh-aw-firewall/api-proxy:0.24.5 ghcr.io/github/gh-aw-firewall/squid:0.24.5 ghcr.io/github/gh-aw-mcpg:v0.2.1 ghcr.io/github/github-mcp-server:v0.32.0
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Version bump from v0.2.0 to v0.2.1 looks good — this correctly updates the gh-aw-mcpg container image tag to use the latest release with the trusted bot fix.

await determineAutomaticLockdown(github, context, core);
- name: Download container images
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall/agent:0.24.5 ghcr.io/github/gh-aw-firewall/api-proxy:0.24.5 ghcr.io/github/gh-aw-firewall/squid:0.24.5 ghcr.io/github/gh-aw-mcpg:v0.2.0 ghcr.io/github/github-mcp-server:v0.32.0 node:lts-alpine
run: bash ${RUNNER_TEMP}/gh-aw/actions/download_docker_images.sh ghcr.io/github/gh-aw-firewall/agent:0.24.5 ghcr.io/github/gh-aw-firewall/api-proxy:0.24.5 ghcr.io/github/gh-aw-firewall/squid:0.24.5 ghcr.io/github/gh-aw-mcpg:v0.2.1 ghcr.io/github/github-mcp-server:v0.32.0 node:lts-alpine
Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Consistent update across all 177 lock files — the bulk recompile correctly propagates the v0.2.0v0.2.1 image tag change.

@pelikhan pelikhan merged commit 0ac5c9e into main Mar 23, 2026
@pelikhan pelikhan deleted the copilot/upgrade-gh-aw-mcpg-latest-release branch March 23, 2026 17:37
pelikhan pushed a commit that referenced this pull request Mar 23, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants