ci: share development and CI tool version pins (ALIEN-1211) - #845
Conversation
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
|
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: eea896725d
ℹ️ About Codex in GitHub
Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".
Use the v5 action tag as explicitly requested. Keep shared tool-version pins and existing cache settings.
CI currently repeats JavaScript versions and installs floating Rust channels, allowing development and CI to use different tools. Add repository mise configuration, read pnpm from package.json, and pin the default Rust compiler to nightly-2026-10-03 in rust-toolchain.toml. CI reads these same files. Named profiles retain stable Python-wheel builds and the Rust 1.97.1 permission compiler.
Cache Node/pnpm/Bun tools separately from Rust installation records, keep Rust tool installation uncached, and include compiler configuration in compiled-binary cache keys. Use exported tool paths without shims so later steps retain the selected compiler profile. Mise installs Node once; setup-node only supplies pnpm dependency caching or npm registry authentication.
Tool configuration changes trigger the relevant Rust, TypeScript, example, and Python checks. Release and npm dev jobs read pins from the workflow revision when packaging an older source commit, and pass the stable compiler explicitly to manylinux wheel builds.
Validation: installed and executed the configured tools and every Rust profile, checked environment export and cache directory separation, parsed all workflow/composite/config files, and ran actionlint with no new findings compared with main. Existing application and compilation caches remain in place. Verified setup-node v4 and v7 preserve mise Node 22/24 without downloading Node or changing PATH, while registry authentication still works. All existing cache and registry inputs remain intact. Hosted CI exercises the full builds.
ALIEN-1211
Use
jdx/mise-action@v5by explicit maintainer choice, allowing upstream v5 updates. Tool versions remain pinned in repository configuration.