Skip to content

ci: add centralized vuln remediation workflow#145

Open
ulziibay-kernel wants to merge 2 commits intomainfrom
security/vuln-remediation-reusable
Open

ci: add centralized vuln remediation workflow#145
ulziibay-kernel wants to merge 2 commits intomainfrom
security/vuln-remediation-reusable

Conversation

@ulziibay-kernel
Copy link
Copy Markdown
Contributor

@ulziibay-kernel ulziibay-kernel commented Apr 9, 2026

Thin caller to the reusable 3-stage pipeline (triage → fix → PR) in kernel/infra. Per-repo config in .github/vuln-remediation.json.

Made with Cursor


Note

Low Risk
Low risk: adds a scheduled/manual GitHub Actions workflow that delegates vulnerability remediation to an external reusable workflow; no runtime application code changes.

Overview
Adds a new GitHub Actions workflow, vuln-remediation.yml, that runs on a weekly schedule (and via manual dispatch) and delegates to the reusable kernel/infra vulnerability remediation pipeline with go.mod as the Go version source.

Adds a minimal socket.yml (version: 2) to enable Socket configuration.

Reviewed by Cursor Bugbot for commit 5089e4b. Bugbot is set up for automated code reviews on this repo. Configure here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant