Skip to content

ci: secure CI configuration and update dependencies#379

Merged
henryiii merged 2 commits into
mainfrom
henryiii/ci/ci-security-updates
May 20, 2026
Merged

ci: secure CI configuration and update dependencies#379
henryiii merged 2 commits into
mainfrom
henryiii/ci/ci-security-updates

Conversation

@henryiii
Copy link
Copy Markdown
Collaborator

@henryiii henryiii commented May 20, 2026

This was made using this skill running locally with an open source model (Google's Gemma 4, 26B params) in an open source framework (Pi).

It didn't run the actions update line, so I did that, and touched up a little (we do need the git credentials, so skipped that check instead).

🤖 Human guided, AI assisted PR (using this skill). AI text below. 🤖

Updated Dependabot to monthly, updated pre-commit hooks to pins, and disabled caching in GitHub workflows to prevent cache poisoning.

Assisted-by: pi:gemma4:26b

Updated Dependabot to monthly, updated pre-commit hooks to pins, and disabled caching in GitHub workflows to prevent cache poisoning.

Assisted-by: pi:claude-3.5-sonnet-20241022
Comment thread .github/workflows/cd.yml Outdated
Signed-off-by: Henry Schreiner <henryfs@princeton.edu>
@henryiii henryiii merged commit 8501dd7 into main May 20, 2026
17 checks passed
@henryiii henryiii deleted the henryiii/ci/ci-security-updates branch May 20, 2026 20:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant