Repository navigation
ci(openfeature): stopgap pin openfeature-sdk<0.10 on latest suitespec - #20698
vlad-scherbich wants to merge 4 commits into
Conversation
Stopgap for openfeature-sdk 0.10+ API drift that 3.15 lock regen hits first. Owner approval: feature-flagging-and-experimentation-sdk.
❌ ErrorsYour PR has failed checks. Please review the issues below and take necessary action before merging. 🚦 1 Pipeline job failed
ℹ️ InfoNo other issues found (see more)🧪 All tests passed Useful? React with 👍 / 👎 This comment will be updated automatically if new data arrives.🔗 Commit SHA: 763a382 | Docs | View more details | Give us feedback! |
Codeowners resolved asResolved from the full PR diff against |
Dependency direction analysis
|
Circular import analysis
|
BenchmarksBenchmark execution time: 2026-10-06 18:16:38 Comparing candidate commit 763a382 in PR branch Found 0 performance improvements and 6 performance regressions! Performance is the same for 623 metrics, 10 unstable metrics, 7 known flaky benchmarks, 17 flaky benchmarks without significant changes.
|
There was a problem hiding this comment.
Note
Copilot was unable to run its full agentic suite in this review.
Copilot review overview
Review effort: Lite
Findings: 3
Open (4)
Previously these lockfiles included a pip-compile provenance header (Python version + exact… · New There are two suites with the samename: openfeaturebut different dependency constraints. If… · New The constraint'openfeature-sdk<0.10'has no lower bound, which can make CI non-reproducible… · New Several newly added.riot/requirements/*.txtfiles appear to contain identical pinned sets. If… · New
What changed in this PR
Updates OpenFeature test suite dependency constraints and refreshes Riot-generated pinned dependency sets.
Changes:
- Broadened an OpenFeature SDK constraint in the CI suite spec (
<0.10). - Regenerated Riot requirement lockfiles (removing older hashed outputs, adding new pinned sets with updated versions).
- Dropped pip-compile provenance headers from newly added Riot requirement files.
| File | Description |
|---|---|
| tests/suitespec.yml | Adjusts OpenFeature SDK version constraint used by a test suite. |
| .riot/requirements/b3bdd52.txt | Removes an older pip-compile output (Python 3.10 set). |
| .riot/requirements/460df49.txt | Removes an older pip-compile output (Python 3.9 set). |
| .riot/requirements/18a4a8d.txt | Removes an older pip-compile output (Python 3.12 set). |
| .riot/requirements/16b741f.txt | Removes an older pip-compile output (Python 3.11 set). |
| .riot/requirements/16138c7.txt | Removes an older pip-compile output (Python 3.14 set). |
| .riot/requirements/13c4b39.txt | Removes an older pip-compile output (Python 3.13 set). |
| .riot/requirements/7f9e953.txt | Adds a new pinned dependency set including openfeature-sdk==0.9.0. |
| .riot/requirements/2e674e7.txt | Adds a new pinned dependency set including openfeature-sdk==0.9.0. |
| .riot/requirements/2be2092.txt | Adds a new pinned dependency set including openfeature-sdk==0.9.0. |
| .riot/requirements/1fd5a24.txt | Adds a pinned set including openfeature-sdk==0.8.4 (appears to target an older Python/tooling combo). |
| .riot/requirements/1d5d3df.txt | Adds a new pinned dependency set including openfeature-sdk==0.9.0. |
| .riot/requirements/165690a.txt | Adds a new pinned dependency set including openfeature-sdk==0.9.0. |
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Restore a lower bound matching the min suitespec variant so the unconstrained latest env cannot resolve below the supported floor.
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
There was a problem hiding this comment.
Copilot review overview
🟢 Approval recommended
The constraint satisfies the issue acceptance criteria and the regenerated lock inventory is consistent; owner ACK remains the stated merge gate.
Review effort: Balanced
Findings: None
Resolved since last review (4)
The constraint'openfeature-sdk<0.10'has no lower bound, which can make CI non-reproducible… There are two suites with the samename: openfeaturebut different dependency constraints. If… Previously these lockfiles included a pip-compile provenance header (Python version + exact… Several newly added.riot/requirements/*.txtfiles appear to contain identical pinned sets. If…
|
Closing: would rather wait for an actual fix to this suite. |


Description
CI stopgap: upper-bound pin
openfeature-sdk<0.10on the unconstrainedlatestopenfeature variant intests/suitespec.yml, then regen riot locks. Fresh 3.15 lock resolution pulls 0.10+ and breaks the suite.This is not a Tier B / 3.15 product adaptation — that stays on #20817. Complete fix: adapt the suite to the new major, then drop this pin.
Owner: FFE / OpenFeature. Merge only after owner ACK.
Closes #20817
Testing