-
Notifications
You must be signed in to change notification settings - Fork 0
Description
Repos scanned: 22 | Mode: hybrid | Run: 23189048813
Summary
| Metric | Count |
|---|---|
| Issues closed (24h) | 25 |
| PRs merged (24h) | 10+ in managed repos |
| In-progress issues | 0 |
| PRs awaiting review | 4 |
| Blockers | 8 |
| Upcoming milestones (7d) | 0 |
⚠️ URGENT:subcogAWS Access Key has been publicly exposed for ~70+ hours with zero remediation. Immediate action required — see Blockers section.
Yesterday's Completions
Issues Closed
25 issues closed in org (most are automated bot reports — Smart Alerts, Housekeeping, Standup, Triage cycles closing previous runs).
Notable automated closures:
zircote/.github[Alert] Smart Alerts — 2026-03-17 00:49 UTC (Run 23173063536) #320: [Alert] Smart Alerts — 2026-03-17 00:49 UTC (superseded by new run)zircote/.github[Dependencies] Weekly Report — 2026-03-09 #180: [Housekeeping] Dependency Updates report (closed after 7d)
PRs Merged
All Dependabot dependency updates — no human-authored merges in last 24h.
atlatl[org-monitor] Daily Report — 2026-03-04 #97: deps: bump clap 4.5.60 → 4.6.0 (by@dependabot[bot])atlatl[Review Nudge] Review Status — 2026-03-04 #98: deps: bump tempfile 3.26.0 → 3.27.0 (by@dependabot[bot])atlatl[Standup] Daily Standup — 2026-03-04 #99: ci: bump taiki-e/install-action 2.68.25 → 2.68.33 (by@dependabot[bot])atlatl[Board Audit] Board Health Report — 2026-03-04 #100: deps: bump fastembed 5.12.0 → 5.12.1 (by@dependabot[bot])atlatl[CI Health] CI Health Report — 2026-03-04 #101: ci: bump sigstore/cosign-installer 4.0.0 → 4.1.0 (by@dependabot[bot])subcog[Alert] Smart Alerts — 2026-03-08T12:19Z #162: deps: bump clap 4.5.60 → 4.6.0 (by@dependabot[bot])subcog[dep-ecosystem] Dependency Report — 2026-03-08 #163: deps: bump uuid 1.21.0 → 1.22.0 (by@dependabot[bot])subcog[Alert] Smart Alerts — 2026-03-08T18:16Z #164: deps: bump rusqlite 0.38.0 → 0.39.0 (by@dependabot[bot])subcog[Housekeeping] Stale Items Report — 2026-03-08 #165: deps: bump once_cell 1.21.3 → 1.21.4 (by@dependabot[bot])subcog[Branch Cleanup] Weekly Report — 2026-03-08 #166: deps: bump tracing-subscriber 0.3.22 → 0.3.23 (by@dependabot[bot])
Releases
- None in last 24h across managed repos.
Today's Plan
In-Progress Work
No issues are explicitly labeled status/in-progress. No open assigned issues found.
Awaiting Review
github-project-manager#4: ci: bump github/gh-aw from 0.56.2 to 0.58.3 — quick win: merging fixes CI failureatlatl-spec#189: deps: bump astro 5.18.0 → 6.0.4 (MAJOR version bump, needs review)adrscope#47: ci: bump github/gh-aw 0.51.4 → 0.56.2adrscope#48: ci: bump taiki-e/install-action (patch)
Upcoming Milestones
No milestones with due dates within 7 days found across managed repos.
Blockers
🔴 CRITICAL — Security
subcog#153: AWS Access Key exposed insrc/security/mod.rs(commitad6f61a6) — ~70+ hours, ZERO response- Immediate action: Revoke key → remove from source → purge git history → rotate dependent services
🔴 CI Failures (7 workflows)
| Repo | Issue | Age | Root Cause |
|---|---|---|---|
sdlc-quality |
CI failing | ~20d |
Broken since chore: update dependabot configuration (2026-03-01) |
vscode-git-adr |
CI failing | ~18d | actions/upload-artifact v6→v7 breaking change |
atlatl-spec |
Validate Specification | ~14d | Invalid <br/> in Mermaid sequence diagram |
atlatl |
CI Checks | ~10d | Clippy 1.94 strict lints + broken doc links |
atlatl |
Pipeline | ~9d | ONNX Runtime prebuilt targets dropped |
daedalus |
Security Audit | ~3d | sigstore/cosign-installer 4.1.0 failure |
github-project-manager |
Agentic Maintenance | ~3d | gh-aw bump needed → merge PR #4 (fix ready) |
Quick win: Merge github-project-manager PR #4 (gh-aw bump to 0.58.3) immediately resolves that CI failure.
Per-Repo Details (22 repos scanned)
atlatl
- Merged: [org-monitor] Daily Report — 2026-03-04 #97 (clap), [Review Nudge] Review Status — 2026-03-04 #98 (tempfile), [Standup] Daily Standup — 2026-03-04 #99 (taiki-e/install-action), [Board Audit] Board Health Report — 2026-03-04 #100 (fastembed), [CI Health] CI Health Report — 2026-03-04 #101 (sigstore/cosign-installer) — all Dependabot
- Pending PRs with failing CI: [Standup] Daily Standup — 2026-03-03 #91 (docker/build-push-action v7), [agent-health] Agent Status — 2026-03-03 #92 (docker/metadata-action v6), [Alert] Smart Alerts — 2026-03-02 (Run #22589807579) #73 (aging 7d+)
- CI: ❌ CI Checks (~10d), ❌ Pipeline (~9d)
subcog
- Merged: [Alert] Smart Alerts — 2026-03-08T12:19Z #162 (clap), [dep-ecosystem] Dependency Report — 2026-03-08 #163 (uuid), [Alert] Smart Alerts — 2026-03-08T18:16Z #164 (rusqlite), [Housekeeping] Stale Items Report — 2026-03-08 #165 (once_cell), [Branch Cleanup] Weekly Report — 2026-03-08 #166 (tracing-subscriber) — all Dependabot
- 🔴 SECURITY: #153 — AWS key exposed ~70h, unresolved
github-project-manager
- PR awaiting merge: #4 — gh-aw 0.56.2 → 0.58.3
- CI: ❌ Agentic Maintenance (~3d) — fixed by merging PR [agentics] Org Repository Monitor failed #4
atlatl-spec
- Open Dependabot PRs: [Triage] Daily Triage Report — 2026-03-09 #187 (
@redocly/clipatch), [Label Audit] Weekly Report — 2026-03-09 #188 (@astrojs/starlightpatch), [Alert] Smart Alerts — 2026-03-09 (18:28 UTC) #189 (astro MAJOR v6) - CI: ❌ Validate Specification (~14d) — invalid Mermaid
<br/>syntax
adrscope
- Open Dependabot PRs: [Release] Weekly Readiness Report — 2026-03-02 #47 (gh-aw minor), [Label Audit] Weekly Report — 2026-03-02 #48 (taiki-e/install-action patch)
daedalus
- Open Dependabot PR: [dep-ecosystem] Dependency Report — 2026-02-27 #15 (zircote/adrscope pin update, CI ✅)
- CI: ❌ Security Audit (~3d) — sigstore/cosign-installer 4.1.0
sdlc-quality
- CI: ❌ CI failing ~20d — investigate
chore: update dependabot configurationcommit
vscode-git-adr
- CI: ❌ CI failing ~18d — update workflow to
actions/upload-artifactv7 API
lro-bench
- Open PR: ci: bump github/codeql-action from 3.28.0 to 4.32.4 #23 (docker/build-push-action v7, CI unstable)
.github, rlm-rs, MIF, homebrew-tap, ccpkg, refactor, human-voice, rlm-rs-plugin, memory-capture-plugin, documentation-review, adr, git-adr, structured-madr
- No activity in last 24h.
Generated by daily-standup workflow
Generated by Daily Standup · ◷