chore(wheelhouse): re-cascade to template@d60c6f3 and repair the build - #20
Conversation
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|
This comment was marked as outdated.
This comment was marked as outdated.
The fleet's rule-file authority is AGENTS.md; the cascade generates CLAUDE.md as an ignored pointer at it. A pure rename, content untouched: the cascade regenerates the fleet block in its own commit. This should be the cascade's rule-file migration, but two wheelhouse bugs stop it from landing on its own: the claude_md_fleet_drift fixer writes AGENTS.md and the migration then refuses the two-authored-files state it just created, and a staged CLAUDE.md deletion sends the cascade's commit pass through a temp-index path that fails with no error text. Renaming first, as a repo-owned commit, puts the cascade back on its normal path.
Auto-applied by socket-wheelhouse commit-cascade into action. 74 file(s) touched: - .claude/settings.json - .config/fleet/oxlintrc.json - .git-hooks/_shared/canonical/source.mts - .git-hooks/_shared/push-commit-messages.mts - .git-hooks/_shared/push-durable-ref.mts - .git-hooks/_shared/push-file-scan.mts - .git-hooks/_shared/push-range.mts - .git-hooks/_shared/push-release-tags.mts - .git-hooks/_shared/push-repo-gates.mts - .git-hooks/_shared/push-signatures.mts - .git-hooks/_shared/push-squash-history.mts - .git-hooks/_shared/run-step.sh - .git-hooks/_shared/scan-core.mts - .git-hooks/fleet/pre-push.mts - .gitattributes - .github/actions/fleet/_shared/codeql-languages.d.mts - .github/actions/fleet/_shared/codeql-languages.mjs - .github/actions/fleet/_shared/install-tool.mjs - .github/actions/fleet/_shared/platform-key.mjs - .github/actions/fleet/_shared/platform.mjs ... and 54 more
Auto-applied by socket-wheelhouse commit-cascade into action. 1 file(s) touched: - pnpm-workspace.yaml
The fleet pack moved scripts/fleet/process/run-main.mts to scripts/fleet/process/main/run.mts. build.mts and its test still pointed at the old path, which is why `pnpm run build`, `pnpm test` and the pre-push type check failed from a clean clone.
publish-npm.yml is the fleet's conditional workflow for repos that publish to the npm registry. This package is private and ships only as a GitHub Action, so the cascade neither refreshes the copy nor declares a channel for it, and the stale copy fails the fleet's workflow-name lint on every push. The cascade's own guidance is to remove it.
oxlint 1.85 (from the catalog bump) enables typescript/no-unsafe-type-assertion, which flags the `as T` in the setTimeout mock. The assertion mirrors node's own contract, so it is allowed per call site with a reason rather than rewritten.
ci-gates.yml and ci-fix.yml are preset-tier (seeded once, then repo-owned), so the cascade does not refresh them. The copies here were the preset as of the August onboarding. The current preset pins hosted runners to explicit OS versions, sets cache-mode: none on the repair job, and runs the CI-tier `pnpm run ci:gates` stages instead of the developer-tier `check --all`, which is what the fleet's own check job now expects. No local customisation was present in either file.
The pure rename kept CLAUDE.md's heading and the template's placeholder repo section. Title the file for what it is and remove the placeholder, which held no repository rules. Content now matches what the cascade's rule-file fixer produces.
7b8a3e3 to
1f1fd50
Compare
Why
All CI on this repo has failed since Sept 17 because the repo fell out of sync with socket-wheelhouse. Setup dies before any repo code runs, and build, test, type and the pre-push hook fail from a clean clone. Re-cascading brings the committed side back to the pack.
What
The
chore(wheelhouse)ones are the cascade's own commits, made bysocket-wheelhouse/scripts/repo/commit-cascade/run.mts --target . --fix; the other eight are repo-owned edits without which either CI or the pre-push hook still fails.Why two cascade passes: the tool commits only the paths it fixed in the current run, and the lockfile reconcile depends on the bumped
pnpm-workspace.yamlbeing committed first. A member this far behind the template needs the cascade run to a fixed point, and each pass is one commit by design.6659922docs: move the engineering rules to AGENTS.md691a359chore(wheelhouse): cascade template@d60c6f3a81798cchore(wheelhouse): cascade template@d60c6f3pnpm-lock.yaml,pnpm-workspace.yaml), which only resolves once the first pass is committed.e21ba26fix(build): import runMain from its new fleet pathscripts/repo/build.mtsandtest/repo/unit/build.test.mtsimportedscripts/fleet/process/run-main.mts, which the pack no longer ships. Without thispnpm run buildandpnpm testfail (CI Test job),pnpm run typefails (CI Check job), and the pre-push type gate blocks every push.649ce21docs: seed CONTRIBUTING.md from the fleet presetpreset_missing) but not committed by it, presets being repo-owned after seeding. Left untracked it failsworking-tree-is-cleaninpnpm run checkand the next cascade re-seeds it.4ef0fc9style: format the CI workflows with the pinned oxfmtci-gates.yml/ci-fix.yml. The pre-push fast lint/format gate blocked the push on exactly these two files.3d6793dci: drop the npm publish workflow this repo never uses7deb481) rejectspublish-npm.yml's📦 Publish npmtitle and blocked the push. The file is the fleet's conditional npm-publish workflow; this package isprivate: trueand ships only as a GitHub Action, so the cascade neither refreshes it nor declares a channel, and the cascade's own report says to remove it or declare a channel. Renaming it trips the reservedpublish: npmtask-name contract instead.43e2487test(firewall): annotate the timers mock for the new assertion lintno-unsafe-type-assertion, which flags theas Tin thesetTimeoutmock from #17 and blocked the push at the pre-push lint gate; the CI Check job runs the same lint. Allowed per call site with a reason, since the assertion mirrors node's ownsetTimeout(delay, value)contract.5a60c4eci: adopt the current preset CI workflowsci-gates.ymlandci-fix.ymlare preset-tier (seeded once, then repo-owned), so the cascade does not refresh them. Current preset: pinned runner images,cache-mode: noneon repair, CI-tierpnpm run ci:gatesstages instead of developer-tiercheck --all.1f1fd50docs: retitle AGENTS.md and drop the template placeholderCLAUDE.md's heading and the template's placeholder repo section, which held no repository rules. Retitled and trimmed so the file matches what the cascade's rule-file fixer produces; without it the file is literally headed# CLAUDE.md.dist/is byte-identical tomain; this PR changes no action behaviour.Why not squashed: the push hook wants one commit per PR branch, but squashing re-runs the pre-commit canonical-fork scanner over cascade output, which it can only verify inside a wheelhouse checkout. Prior cascades (
7e247cd,18ac884) were pushed straight tomainand never met that rule.Verification
Local (pnpm 12.7.0 from the fleet's pinned release, pack
d60c6f3hydrated):type✔,build✔ (dist unchanged),test✔ 18 files / 192 tests,lint --all✔. Pushed with hooks enabled.CI on
7b8a3e3, the previous head, whose tree differs from this one only in the cascade's catalog picks a day later (fallow 3.28.0, TypeScript dev 20260922) and the lockfile that follows them: Check distribution ✔, Test on ubuntu-26.04 / macos-26 / windows-2025 ✔, CodeQL ✔, Bugbot ✔. Check ✖ on one finding,commits-are-signed, which is a false negative for SSH signers in CI (see comment below); not a required status.After this
#19 and #18 rebase onto this so their CI can run; #18 additionally onto #19 for the v1.15.3 checksum table.
🤖 Generated with Claude Code