|
21 | 21 | - name: 'us-central1-docker.pkg.dev/cloud-db-nl2sql/evalbench/eval_server:test' |
22 | 22 | entrypoint: 'bash' |
23 | 23 | # Decrypts the secret from Secret Manager into the DB_PASSWORD environment variable |
24 | | - secretEnv: ['DB_PASSWORD', 'GITHUB_TOKEN', 'AGY_OAUTH_TOKEN', 'AGY_INSTALLATION_ID'] |
| 24 | + secretEnv: ['DB_PASSWORD', 'GITHUB_TOKEN'] |
25 | 25 | args: |
26 | 26 | - '-c' |
27 | 27 | - | |
@@ -83,15 +83,6 @@ steps: |
83 | 83 | # Maps the decrypted DB_PASSWORD to the exact variable expected by gemini_cli and extension skills |
84 | 84 | export CLOUD_SQL_POSTGRES_PASSWORD=$$DB_PASSWORD |
85 | 85 |
|
86 | | - # Seed agy auth: this step overrides the image ENTRYPOINT (entrypoint: bash), |
87 | | - # so entrypoint.sh never runs -- seed the token files here instead. HOME is |
88 | | - # /builder/home in a Cloud Build step, which is exactly where the harness reads. |
89 | | - AGY_DIR="$$HOME/.gemini/antigravity-cli" |
90 | | - mkdir -p "$$AGY_DIR" |
91 | | - printf '%s' "$$AGY_OAUTH_TOKEN" > "$$AGY_DIR/antigravity-oauth-token" |
92 | | - printf '%s' "$$AGY_INSTALLATION_ID" > "$$AGY_DIR/installation_id" |
93 | | - chmod 600 "$$AGY_DIR/antigravity-oauth-token" "$$AGY_DIR/installation_id" |
94 | | -
|
95 | 86 | # Combine CI metadata with all available run configs |
96 | 87 | for config in /workspace/evals/*run_config.yaml; do |
97 | 88 | if [ -f "$config" ]; then |
@@ -122,7 +113,3 @@ availableSecrets: |
122 | 113 | env: 'DB_PASSWORD' |
123 | 114 | - versionName: projects/$PROJECT_ID/secrets/GITHUB_TOKEN/versions/latest |
124 | 115 | env: 'GITHUB_TOKEN' |
125 | | - - versionName: projects/$PROJECT_ID/secrets/AGY_OAUTH_TOKEN/versions/latest |
126 | | - env: 'AGY_OAUTH_TOKEN' |
127 | | - - versionName: projects/$PROJECT_ID/secrets/AGY_INSTALLATION_ID/versions/latest |
128 | | - env: 'AGY_INSTALLATION_ID' |
0 commit comments