fix(ci): the invisible-character gate never matched anything (#48) #115
governance.yml
on: push
governance
/
Check Workflow Staleness
8s
governance
/
Allowlist Preflight
6s
governance
/
Live Actions policy (credentialed advisory)
5s
governance
/
...
/
package anti-pattern policy
7s
governance
/
Guix packaging policy (Nix retired)
6s
governance
/
Security policy checks
4s
governance
/
Code quality + docs
10s
governance
/
Well-Known (RFC 9116 + RSR)
6s
governance
/
Workflow security linter
22s
governance
/
Actions lockfile verify
10s
governance
/
Trusted-base reduction policy
6s
governance
/
Licence consistency
8s
governance
/
Exemption ratchet
governance
/
Debt ratchet
governance
/
Validate Hypatia Baseline
31s
Annotations
2 errors and 3 warnings
|
governance / Validate Hypatia Baseline
Process completed with exit code 1.
|
|
governance / Validate Hypatia Baseline
Gate failed: 30 unfiltered finding(s) at or above 'info'.
|
|
governance / Live Actions policy (credentialed advisory)
Live Actions policy was not evaluated: HYPATIA_SCAN_PAT was not supplied by the caller. The separate tree allowlist gate still ran.
|
|
governance / Workflow security linter
UNVERIFIED: 1 of 24 pin(s) could not be checked
|
|
governance / Actions lockfile verify
actions-lock gate: no .github/workflows/actions.lock. All refs are SHA-pinned, but the lockfile becomes REQUIRED on 2026-10-01 (today is 2026-09-09). Run scripts/update-actions-lock.sh.
|