Skip to content

docs: describe the four agent tools as pinned, not always-latest - #120

Merged
gatezh merged 3 commits into
masterfrom
docs/pinned-tool-refs
Aug 14, 2026
Merged

gatezh merged 3 commits into
masterfrom
docs/pinned-tool-refs

Conversation

@gatezh

@gatezh gatezh commented Aug 14, 2026

Copy link
Copy Markdown
Owner

What

Correct the version-pinning claims left behind by #116: the READMEs still described rtk, ralphex, the Claude Code CLI, and agent-browser as floating at "latest".

Why

#116 changed two facts — the rebuild cadence and the truth about versions — but only the cadence wording was fixed. Readers were told these tools track latest on every build, and claude-code's Build Args table documented a default (AGENT_BROWSER_VERSION: latest) that no longer exists.

The miss came from auditing only for daily/cron. ralphex-fe/README.md never claimed a daily rebuild, so it never appeared in that grep — while its version table silently went stale.

Changes

  • ralphex-fe/README.md: three "latest" rows → the pinned versions; new Automatic Rebuilds section (this image documented no rebuild trigger at all). Records a consequence worth knowing: because the version tag derives from Bun and Hugo only, an agent-tool bump refreshes latest and overwrites the existing bun{VERSION}-hugo{VERSION} tag rather than minting a new one.
  • claude-code/README.md: drop "Always-latest from GitHub Releases" and "pre-installed in the image at latest"; fix AGENT_BROWSER_VERSION's default to 0.32.3 and add the RTK_VERSION / RALPHEX_VERSION / CLAUDE_CODE_VERSION rows that Rebuild claude-code & ralphex-fe only on real tool updates (Renovate) #116 introduced but never documented.
  • README.md: document the Renovate path above the manual workflow_dispatch path, and state what stays manual (base images, Bun/Hugo).
  • Section named Automatic Rebuilds in ralphex-fe to match the existing heading in claude-code, so the cross-links share one anchor.

Notes

  • Docs-only, so ci.yml's path filters (**/Dockerfile, **/*.sh, .github/workflows/**, .hadolint.yaml) mean no checks will run here. Expected, not a stuck pipeline.
  • Version numbers were read from master's Dockerfiles rather than transcribed, and both #automatic-rebuilds anchors were verified against their headings. The only surviving "latest" in these files is the claude-code:latest image tag, which is correct.
  • Merging this pushes master, which gives the Renovate app a webhook event to react to — useful, since it hasn't run yet.

Closes #119

gatezh added 2 commits August 14, 2026 12:37
#116 pinned rtk, ralphex, the Claude Code CLI and agent-browser as
Renovate-managed ARGs, but only the rebuild-cadence wording was corrected.
The version-pinning claims were left behind, so several places still told
readers these tools float at "latest".

- ralphex-fe: replace the three "latest" rows with the pinned versions, and
  add an Automatic Rebuilds section — the image had no rebuild-trigger docs
  at all, which is why the stale rows never surfaced in a "daily" grep. Note
  that an agent-tool bump overwrites the bun-hugo tag instead of minting a
  new one, since the version tag derives from Bun and Hugo only.
- claude-code: drop "Always-latest from GitHub Releases" and "pre-installed
  at latest"; correct AGENT_BROWSER_VERSION's default and document the three
  build args that #116 added but never listed.
- root: document the Renovate path above the manual dispatch path, and say
  plainly what stays manual (base images, Bun/Hugo).

Refs #119
Installing the app with "All repositories" defaults the repo to Silent mode
(dryRun=lookup): Renovate scans and lists updates in the developer portal but
creates no PRs and no issues — including the Dependency Dashboard and any
config-warning issue. A correct config then looks indistinguishable from a
broken one, which is exactly how this repo presented after #116 landed.

Record the portal fix and the reason a config change can't substitute for it:
mode is overridden by dryRun, which is admin-level.

Refs #119
@gatezh

gatezh commented Aug 14, 2026

Copy link
Copy Markdown
Owner Author

Added 5e3e203: documents the Mend Interactive vs Silent mode requirement in the new Renovate section.

Root cause of "Renovate isn't doing anything" on this repo, now confirmed from the portal: Dependency Updates (Renovate): **Silent**. Per Mend's hosted-app docs, installing with "All repositories" defaults to Silent (dryRun=lookup), which suppresses PRs and all issues — including the Dependency Dashboard and config-warning issues. Detection was working the whole time: 7/7 annotations, with rtk 0.43.0→0.45.0, ralphex 1.6.0→1.6.1, claude-code 2.1.216→2.1.229, agent-browser 0.32.3→0.34.0 sitting in Pending Approval.

Worth documenting because a correct config in Silent mode is indistinguishable from a broken one, and because mode in renovate.json5 can't fix it — dryRun takes precedence and is admin-level.

Renovate's docs say to switch to "Interactive mode", but the Mend portal has
no such control — it exposes a Silent mode toggle plus Automated PRs, Require
config file, and Create onboarding PRs. Give the four toggle values so this is
actionable from the UI as it exists.

Refs #119
@gatezh
gatezh merged commit 88a2161 into master Aug 14, 2026
@gatezh
gatezh deleted the docs/pinned-tool-refs branch August 14, 2026 20:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

docs: READMEs still describe rtk/ralphex/claude-code/agent-browser as unpinned "latest"

1 participant