feat(renovate): open bump PRs for new Upstream Versions #27
No reviewers
Labels
No labels
bug
enhancement
needs-info
needs-triage
ready-for-agent
ready-for-human
wayfinder:grilling
wayfinder:map
wayfinder:prototype
wayfinder:research
wayfinder:task
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set
Reference
vicoli-oss/docker-forgejo-mcp!27
Loading…
Reference in a new issue
No description provided.
Delete branch "piscis/forgejo-issue-8-implement"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Closes #8. Supersedes onboarding PR #13.
Summary
renovate.jsonturns on the self-hosted bot and gives it exactly one job: bump the Pin.git-refs/base.js) replaces each tag's hash with its^{}peeled hash, the same checkmake verify-pinfrom #26 runs.postUpgradeTasks, andREBUILD/REBUILD_OFsit outside the match, so Renovate can't touch them.$schemafile, and it would clash with this file (both addrenovate.json). Once this merges the repo counts as onboarded. Renovate prunesrenovate/configureonly if it considers the branch unmodified; my dry run skipped the deletion ("Orphan Branch is modified", probably because my run didn't have the bot's git author). If #13 is still open after the bot's first run, close it by hand.Evidence
Config validation (Renovate 43.288.0, same major as the bot's
ghcr.io/renovatebot/renovate:43; also passes on 44.125.1):Regex against
pin.env(node script: the manager's pattern, run with JSRegExp):Lookup scenarios (
renovate --platform=local --dry-run=full, a copy of the repo withpin.envedited, live lookups against Upstream):v3.2.0/e30bb7e2(current)Returning 0 branch(es)v3.1.0/369de3db(one behind)v3.2.0/e30bb7e2e45c0e447506b5df1fe83ebce4b43944, minor,renovate/forgejo-mcp, 1 branchv2.9.1(a major behind)v3.2.0/e30bb7e2…, one branchrenovate/forgejo-mcp(no separate 2.x PR)v3.0.0-alpha.1v3.2.0(stable);v3.0.0-alpha.1itself is never proposedv3.2.0/0000…(tag "moved")Returning 0 branch(es)Forgejo dry run against this repo (the
-p node@24wrapper only supplies the Node version Renovate needs;--onboarding=falseandRENOVATE_CONFIG_FILEpass this branch'srenovate.jsonbecausemainhas none yet):Release notes in the PR body: I called Renovate's
getChangeLogJSONdirectly with the hostRule set:If that fetch ever fails,
prBodyNotesstill links…/releases/tag/<newVersion>.Needs a live bot run
These depend on the deployed bot and a real Upstream release, so this PR doesn't claim them. Steps to check each one after merge:
main, set the Pin toUPSTREAM_VERSION=v3.1.0,UPSTREAM_COMMIT=369de3dbcf27e24bb0d45b8cb7219f42aafce88c,REBUILD_OF=v3.1.0, and merge it. (Or wait for Upstream's next release, which avoids touchingmain.) Within ~5 min (the bot runs@every 300s), check: exactly one open PR fromrenovatebotonrenovate/forgejo-mcp; its diff changes onlyUPSTREAM_VERSION→v3.2.0andUPSTREAM_COMMIT→e30bb7e2e45c0e447506b5df1fe83ebce4b43944; the body links the Upstream release;make print-tagon that branch prints3.2.0-r1; the PR CI (#6) runs and the Dockerfile's commit check and smoke test pass.renovate/forgejo-mcpPR is retargeted, becausebranchTopichas no major in it.v3.2.0/e30bb7e2…, check the next bot run opens no PR and the bot log showsforgejo-mcp … updates: [].-alpha/-rctag, check no PR appears. (Covered offline byallowedVersionsabove.)main, check #13 is closed/autoclosed; if not, close it by hand.Merge Danger
Door: two-way
Reverting
renovate.json(or setting"enabled": false) stops the bot. Any bump PR it has opened can simply be closed.Blast Radius: small
It only affects this repo's bot behaviour. The bot's PRs change only
pin.env, and they merge (and publish via #7) only after human review. Merging turns off the onboarding flow for good: #13 is superseded, and Renovate won't reopen an onboarding PR.