ouroboros/.github
Ouroboros 9637d194c2 Docker: one self-contained image with the browsers above the lock copy
Fold the base/app split back into a single Dockerfile. The base tag was
never published, so a plain `docker build -t ouroboros-web .` failed on
every fresh machine, and a runtime `UV_PROJECT_ENVIRONMENT` let an agent's
`uv sync` in a task workspace rewrite the runtime venv. What the split was
for stays: the Playwright browsers pinned to the locked version are
installed from an ephemeral uvx tool environment into `/ms-playwright`
above `COPY pyproject.toml uv.lock` (every release rewrites the lock), and
the BuildKit cache mounts keep the uv and apt caches out of the layers
(4.82 GB -> 4.12 GB). The tag-only docker lanes stop forcing
`PLAYWRIGHT_BROWSERS_PATH=0`, which pointed at an empty package tree and
made them download browsers mid-test; the portable path-length test reads
the shipped browser path. The Russian Trusted CA files leave the image:
the next commit gives deployments an owner-side setting instead.
Docs: ARCHITECTURE §8 Docker, README.
2026-09-26 00:46:45 +03:00
..
actions/setup-python-env Isolate candidate verification and expand event-driven browser checks 2026-09-23 08:59:49 +03:00
ISSUE_TEMPLATE docs: sharpen Ouroboros repository presentation (#74) 2026-07-24 07:14:13 +03:00
workflows Docker: one self-contained image with the browsers above the lock copy 2026-09-26 00:46:45 +03:00
PULL_REQUEST_TEMPLATE.md Retire completed campaign artifacts and keep repository reports explicit 2026-09-18 01:07:51 +03:00