Skip to content

Add public quality profiles - #6

Merged
stc93025mn merged 1 commit into
mainfrom
codex/public-quality-program
Jul 23, 2026
Merged

Add public quality profiles#6
stc93025mn merged 1 commit into
mainfrom
codex/public-quality-program

Conversation

@stc93025mn

Copy link
Copy Markdown
Member

Summary

  • Add reusable TypeScript, Python, and metadata quality profiles.
  • Give all profiles one stable Quality result.
  • Replace the local metadata quality steps with the reusable metadata profile.
  • Allow only the SHA-pinned public quality workflow through the public security boundary.
  • Document the caller and profile requirements.

Reason

Public repositories cannot install the private @mnppi/quality package in untrusted pull request jobs. This workflow runs public tools without package credentials.

Validation

  • github-actionlint
  • zizmor --min-severity=medium --min-confidence=medium
  • prettier --check .
  • repomix
  • git diff --check

This pull request stays in draft until the live workflow checks prove the metadata profile.

@stc93025mn
stc93025mn marked this pull request as ready for review July 23, 2026 05:12
@stc93025mn
stc93025mn merged commit 7fd743c into main Jul 23, 2026
7 checks passed
@stc93025mn
stc93025mn deleted the codex/public-quality-program branch July 23, 2026 05:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant