Skip to content

Commit 41b9f11

Browse files
TheStreamCodeTheStreamCode
andauthored
chore: fleet hygiene (release automation, dependabot, community files) (#1)
* chore: fleet hygiene (community files, CI permissions, dependabot) Add SECURITY.md (private advisories + info@mikesoft.it fallback + never-log-keys rule, adapted from hermes-chutes-provider), CONTRIBUTING.md, CODE_OF_CONDUCT.md (with private-contact line), and structured issue forms + PR template (adapted from hermes-chutes-provider). Add permissions: contents: read to ci.yml and grouped-weekly dependabot.yml (github-actions; the plugin is stdlib-only by design, so no pip entry). Closes the review P0 and P1 file items for hermes-muse-code. * ci: replace broken upstream plugin-validate with local validator The upstream NousResearch/hermes-agent plugin-validate action installs hermes-agent via pip from git, but hermes-agent's own setup.py guard rejects wheel/sdist builds outside Nix (pip/PyPI unsupported since d84e11a). The action has a single revision in history, so no last-good version exists to pin. Replace the validate job with a checked-in stdlib-only script (.github/scripts/validate-plugin.py) performing the same admission checks (manifest schema, stdlib-only imports, capability probe) with no hermes-agent install and no upstream dependency, so the job gates green again. Update CONTRIBUTING.md and the PR template to reference the local validator. --------- Co-authored-by: TheStreamCode <michael@mikesoft.it>
1 parent e335011 commit 41b9f11

11 files changed

Lines changed: 611 additions & 8 deletions

File tree

‎.github/ISSUE_TEMPLATE/bug.yml‎

Lines changed: 73 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,73 @@
1+
name: Bug report
2+
description: Report reproducible behavior in the Hermes Muse Code provider
3+
title: "[Bug]: "
4+
labels: ["bug"]
5+
body:
6+
- type: markdown
7+
attributes:
8+
value: |
9+
Thanks for helping improve this independent, unofficial integration.
10+
Remove subscription keys, credentials, private prompts, and account data before submitting.
11+
- type: textarea
12+
id: summary
13+
attributes:
14+
label: Problem summary
15+
description: What happened, and what did you expect instead?
16+
validations:
17+
required: true
18+
- type: textarea
19+
id: reproduction
20+
attributes:
21+
label: Reproduction steps
22+
description: Provide the smallest sequence that reproduces the problem.
23+
placeholder: |
24+
1. Configure...
25+
2. Run...
26+
3. Observe...
27+
validations:
28+
required: true
29+
- type: dropdown
30+
id: installation
31+
attributes:
32+
label: Installation route
33+
options:
34+
- Manual directory install from a release tag
35+
- Development checkout from main
36+
- Entry-point or native install under development
37+
- Other
38+
validations:
39+
required: true
40+
- type: input
41+
id: plugin-version
42+
attributes:
43+
label: Plugin version or commit
44+
placeholder: v0.2.0 or a commit SHA
45+
validations:
46+
required: true
47+
- type: input
48+
id: hermes-version
49+
attributes:
50+
label: Hermes Agent version or commit
51+
validations:
52+
required: true
53+
- type: input
54+
id: environment
55+
attributes:
56+
label: Environment
57+
description: Include Python version and operating system.
58+
placeholder: Python 3.12 on Windows 11
59+
validations:
60+
required: true
61+
- type: textarea
62+
id: logs
63+
attributes:
64+
label: Sanitized logs
65+
description: Include only relevant output after removing sensitive data.
66+
render: shell
67+
- type: checkboxes
68+
id: safety
69+
attributes:
70+
label: Sensitive-data check
71+
options:
72+
- label: I removed subscription keys, credentials, private prompts, and account data.
73+
required: true
Lines changed: 53 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,53 @@
1+
name: Compatibility report
2+
description: Report a compatibility problem with a Hermes or Muse change
3+
title: "[Compatibility]: "
4+
labels: ["compatibility"]
5+
body:
6+
- type: markdown
7+
attributes:
8+
value: |
9+
Use this form when the provider stops matching a released Hermes version or a documented Muse subscription behavior.
10+
Remove subscription keys, credentials, private prompts, and account data before submitting.
11+
- type: dropdown
12+
id: affected-system
13+
attributes:
14+
label: Affected system
15+
options:
16+
- Hermes Agent
17+
- Muse subscription login
18+
- Both or unclear
19+
validations:
20+
required: true
21+
- type: input
22+
id: plugin-version
23+
attributes:
24+
label: Plugin version or commit
25+
placeholder: v0.2.0 or a commit SHA
26+
validations:
27+
required: true
28+
- type: input
29+
id: upstream-version
30+
attributes:
31+
label: Hermes or Muse version reference
32+
description: Provide a release, commit, dated behavior change, or authoritative link.
33+
validations:
34+
required: true
35+
- type: textarea
36+
id: observed-behavior
37+
attributes:
38+
label: Observed compatibility problem
39+
description: Explain the regression and provide minimal reproduction steps.
40+
validations:
41+
required: true
42+
- type: textarea
43+
id: evidence
44+
attributes:
45+
label: Sanitized evidence
46+
description: Add relevant logs or links after removing sensitive data.
47+
- type: checkboxes
48+
id: safety
49+
attributes:
50+
label: Sensitive-data check
51+
options:
52+
- label: I removed subscription keys, credentials, private prompts, and account data.
53+
required: true

‎.github/ISSUE_TEMPLATE/config.yml‎

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,8 @@
1+
blank_issues_enabled: false
2+
contact_links:
3+
- name: Report a security vulnerability
4+
url: https://github.com/TheStreamCode/hermes-muse-code/security/advisories/new
5+
about: Send sensitive findings privately. Never include credentials in a public issue.
6+
- name: Hermes Agent support
7+
url: https://github.com/NousResearch/hermes-agent/issues
8+
about: Report issues that also occur without this provider to the Hermes Agent project.
Lines changed: 19 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,19 @@
1+
---
2+
name: Feature request
3+
about: Suggest an improvement for the Muse Code provider plugin
4+
title: "[FEAT] "
5+
labels: enhancement
6+
assignees: ''
7+
---
8+
9+
## Problem
10+
What problem does this solve?
11+
12+
## Proposed Solution
13+
How you'd like it to work.
14+
15+
## Alternatives Considered
16+
Other approaches you've thought about.
17+
18+
## Additional Context
19+
Any other relevant information.

‎.github/PULL_REQUEST_TEMPLATE.md‎

Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,13 @@
1+
## Summary
2+
3+
-
4+
5+
## Validation
6+
7+
- [ ] `python -m pytest -q`
8+
- [ ] `python .github/scripts/validate-plugin.py --path .` (local plugin validator, runs in CI)
9+
10+
## Compatibility and Security
11+
12+
- [ ] No credentials, secrets, or private data are included
13+
- [ ] Hermes Agent and Muse subscription compatibility claims were verified

‎.github/dependabot.yml‎

Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,18 @@
1+
version: 2
2+
updates:
3+
- package-ecosystem: "github-actions"
4+
directory: "/"
5+
schedule:
6+
interval: "weekly"
7+
day: "monday"
8+
labels:
9+
- "dependencies"
10+
- "github-actions"
11+
commit-message:
12+
prefix: "chore(actions)"
13+
include: "scope"
14+
groups:
15+
actions-minor-patch:
16+
update-types:
17+
- "minor"
18+
- "patch"

0 commit comments

Comments
 (0)