🔄 Preview: Latest 5.15.0 RNs.mdx - #2790
Draft
probelabs[bot] wants to merge 539 commits into
Draft
Conversation
* Fixes * URL Fixes
* security: harden tyk-docs — pin actions, fix installs - Pin all GitHub Actions `uses:` references to SHA-256 commit hashes - Pin Docker image (autoupdate-action) to digest - Add --ignore-scripts to npm install - Add --no-deps to pip install commands - Flag curl|tee supply-chain risk with TODO comment - Pin reusable workflows (buger/probe, Codium-ai/pr-agent) to SHA Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com> * security: upgrade action versions and add permissions blocks - Upgrade actions/checkout v3 -> v4 and actions/github-script v6 -> v7 - Add least-privilege permissions blocks to pr_agent, mirror-pr, validate-docs workflows Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com> * security: pin pip package versions with upper bounds Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com> * security: add least-privilege permissions blocks to all workflows Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com> * security: complete CI/CD hardening across all workflows - Pin pip bootstrap to versioned range (pip>=23.0,<25) - Replace npm install with npm ci for deterministic builds - Replace curl|bash gh CLI install with pinned version download - Add Dependabot config for automated github-actions SHA updates - All actions already SHA-pinned, permissions blocks already present Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com> --------- Co-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
* docs: add TYK_DB_LOGLEVEL and log_level config support * DX-2357: Update to use TYK_LOGLEVEL instead of TYK_DB_LOGLEVEL * docs: add note about TYK_LOGLEVEL priority * docs: add note about TYK_DB_ prefix for TYK_LOGLEVEL * docs: add note about TYK_LOGFORMAT priority * ci: remove --no-deps from pip install requests * Apply suggestions from code review Co-authored-by: Master <sharadregoti15@gmail.com> * Update upgrade recommendations for production environments Removed reference to Tyk Operator for production upgrades. --------- Co-authored-by: Leonid Bugaev <leonsbox@gmail.com> Co-authored-by: Master <sharadregoti15@gmail.com>
…chor fragments (#1865) * DX-2361: Add GitHub Actions to validate external URLs and internal anchors - Extend validate_mintlify_docs.py with --check-anchors flag that extracts GFM-slugified heading anchors, {#custom-id} syntax, and <a id/name> elements from target MDX files and verifies every internal #fragment resolves - Update validate-docs.yml to run anchor check on every PR - Add check-external-links.yml workflow: weekly scheduled (Mon 07:00 UTC) and manual-trigger run that HEAD-checks all external HTTP/HTTPS URLs Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> * DX-2361: Run external link check on every pull request Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> * DX-2361: Fix exit code not failing on broken external links External link failures were reported but never factored into the exit code, so CI was passing despite 404s. Added has_broken_external check and a summary line for external link results. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> * DX-2361: Switch external link checker to lychee Replace sequential Python/requests approach with lycheeverse/lychee-action. Lychee runs checks in parallel, has built-in retry logic, and is purpose-built for link checking — much faster on a repo with 1500+ external URLs. Add lychee.toml to exclude tyk-owned domains, localhost, placeholder URLs, and sites known to block bots (LinkedIn, Facebook). Accept 429 as non-broken to handle rate-limited responses gracefully. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> * Fix mirror-pr workflow failing on PR bodies with special characters GitHub Actions expands ${{ }} expressions before the shell runs, so backticks and $ signs in PR bodies were injected raw into the script and interpreted as shell command substitution. Fix: write static content via a single-quoted heredoc (no shell expansion), then append the PR body via printf with an env var ($PR_BODY). Shell variables accessed as "$VAR" are never re-interpreted, making any PR body content safe. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> * Fix lychee checking internal/relative links Add scheme = ["https", "http"] to lychee.toml so lychee only attempts to check http/https URLs. Without this, lychee tries to resolve root-relative paths (/img/..., /page/...) as file URIs and fails. Internal links are already validated by validate-docs.yml. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> * Fix lychee erroring on root-relative paths scheme = ["https", "http"] didn't help because lychee fails to build the URL before the scheme filter runs. Set base = "https://tyk.io" so root-relative paths (/img/..., /page/...) are resolved to https://tyk.io/... and then silently skipped by the existing tyk.io exclude rule, rather than producing "cannot convert path to URI" errors. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> * Fix lychee config: base -> base_url Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> --------- Co-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>
#1872) * docs: add container support guide (Podman, containerd, CRI-O) * docs(DX-2363): restructure container runtimes guide and add cross-references - Rewrite containers.mdx as a proper Tyk docs page: clean frontmatter, active voice, no numbered headings, FAQ as AccordionGroup, no em dashes - Move page from tyk-self-managed/install/containers to deployment-and-operations/container-runtimes - Update docs.json: remove old nav entry, add new entry under Configuration group after planning-for-production - Add Container Runtimes cross-reference Note (after Prerequisites) to 7 install pages: tyk-self-managed docker/k8s, portal docker/k8s, ai-studio docker/k8s, tyk-governance installation Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> --------- Co-authored-by: Leonid Bugaev <leonsbox@gmail.com> Co-authored-by: Sharad Regoti <sharadregoti15@gmail.com> Co-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>
Update dashboard.mdx
Replace ORG_GH_TOKEN with GitHub App token (actions/create-github-app-token) in release-bot.yaml, autoupdate.yaml, mirror-pr-to-build-deploy.yml, trigger-docs-deploy.yml, and deploy-docs.yml workflows.
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com>
* Update gateway.mdx * Update dashboard.mdx * Update overview.mdx * Update dashboard.mdx * Update gateway.mdx * Update gateway.mdx * Update dashboard.mdx * Update developer-support/release-notes/dashboard.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/dashboard.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/dashboard.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/dashboard.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/dashboard.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/gateway.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/gateway.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/gateway.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/gateway.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/gateway.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update developer-support/release-notes/gateway.mdx Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Apply suggestion from @andyo-tyk Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Apply suggestion from @andyo-tyk Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> * Update gateway.mdx * Update gateway.mdx * Update developer-support/release-notes/gateway.mdx * Update gateway.mdx * F * Update gateway.mdx * Update dashboard.mdx * Update gateway.mdx --------- Co-authored-by: andyo-tyk <99968932+andyo-tyk@users.noreply.github.com> Co-authored-by: Sharad Regoti <sharadregoti15@gmail.com> Co-authored-by: probelabs[bot] <219682034+probelabs[bot]@users.noreply.github.com>
Bumps the github-actions group with 4 updates: [actions/checkout](https://github.com/actions/checkout), [actions/setup-python](https://github.com/actions/setup-python), [actions/setup-node](https://github.com/actions/setup-node) and [probelabs/visor](https://github.com/probelabs/visor). Updates `actions/checkout` from 4 to 7 - [Release notes](https://github.com/actions/checkout/releases) - [Commits](actions/checkout@v4...v7) Updates `actions/setup-python` from 6.3.0 to 7.0.0 - [Release notes](https://github.com/actions/setup-python/releases) - [Commits](actions/setup-python@ece7cb0...5fda3b9) Updates `actions/setup-node` from 6.4.0 to 7.0.0 - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@48b55a0...8207627) Updates `probelabs/visor` from 02e893ad11b66319b0fca1a43622038171c1a159 to 7d3606179ad7dbc55b83872f2c7927d0a5392d3d - [Release notes](https://github.com/probelabs/visor/releases) - [Commits](probelabs/visor@02e893a...7d36061) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/setup-python dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/setup-node dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: probelabs/visor dependency-version: 7d3606179ad7dbc55b83872f2c7927d0a5392d3d dependency-type: direct:production dependency-group: github-actions ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: probelabs[bot] <219682034+probelabs[bot]@users.noreply.github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
🔗 Auto-generated mirror PR for Mintlify preview
Original PR: #2702
Author: @JoanCamosTyk
Purpose
This PR provides a Mintlify preview link for reviewing documentation changes.
Preview Link
The Mintlify preview will be available once this PR is processed.
Changes
PR Type
Documentation
Description
Adds Dashboard 5.15.0 release notes
Adds Gateway 5.15.0 release notes
Documents MCP, governance, and configuration features
Updates latest release links and versions
Diagram Walkthrough
File Walkthrough
dashboard.mdx
Document Dashboard 5.15.0 features and fixesdeveloper-support/release-notes/dashboard.mdx
kv://gateway.mdx
Document Gateway 5.15.0 features and fixesdeveloper-support/release-notes/gateway.mdx
overview.mdx
Update latest release metadata to 5.15.0developer-support/release-notes/overview.mdx
5.15.0latest