Buyer-visible and merge-flow blocker
ContextualWisdomLab/mightyETL#121 is the sole dependency-eligible root of a seven-PR commercial ETL stack. Its exact head 2f374446b0e0dc180c53736787a2a7a9b331503f has successful repository CI, dependency review, CycloneDX SBOM, Semgrep, Security Scan, mergeability, and resolved review threads, but the central mention router repeatedly records:
Rejected @opencode-agent: repository is absent from OPENCODE_REPOSITORY_DISPATCH_TARGETS
No old review or author-only comment may substitute for the required exact-head independent verdict.
Required bounded change
Update the organization/repository Actions variable OPENCODE_REPOSITORY_DISPATCH_TARGETS by adding exactly:
ContextualWisdomLab/mightyETL
Preserve every existing exact entry and comma-delimited normalization rule. Do not use wildcards, organization-wide implicit admission, prefix matching, repository discovery, or model-controlled targets.
Security and credential invariants
- Keep the existing OpenCode review identity, OIDC/App-token exchange,
NVIDIA_NIM_API_KEY model path, and reviewer credential chain unchanged.
- Do not introduce
COPILOT_GITHUB_TOKEN.
- Continue binding dispatch to live same-repository PR metadata, exact base/head refs and SHA values, configured scheduler actor/sender, and an exact target allowlist.
- The review path remains review-only: no branch update, approval synthesis, merge, release, or branch-protection mutation.
- No business payload or PII is added to the variable or dispatch receipt.
Acceptance evidence
- The stored variable contains
ContextualWisdomLab/mightyETL exactly once and retains all prior exact entries.
- A fresh
@opencode-agent review mention on unchanged mightyETL#121 receives a durable queued/accepted receipt rather than an allowlist rejection.
- The resulting repository-dispatch run validates the live PR number, base, and exact head
2f374446b0e0dc180c53736787a2a7a9b331503f before review.
- A non-allowlisted repository remains rejected in a deterministic contract or controlled negative verification.
- No credential, permission, provider, reviewer identity, or merge policy changes.
After the variable change, rerun the exact-head OpenCode/Noema review for mightyETL#121; do not reuse the earlier rejected receipts. This issue can close only after the accepted receipt and terminal review evidence are visible.
Buyer-visible and merge-flow blocker
ContextualWisdomLab/mightyETL#121is the sole dependency-eligible root of a seven-PR commercial ETL stack. Its exact head2f374446b0e0dc180c53736787a2a7a9b331503fhas successful repository CI, dependency review, CycloneDX SBOM, Semgrep, Security Scan, mergeability, and resolved review threads, but the central mention router repeatedly records:No old review or author-only comment may substitute for the required exact-head independent verdict.
Required bounded change
Update the organization/repository Actions variable
OPENCODE_REPOSITORY_DISPATCH_TARGETSby adding exactly:Preserve every existing exact entry and comma-delimited normalization rule. Do not use wildcards, organization-wide implicit admission, prefix matching, repository discovery, or model-controlled targets.
Security and credential invariants
NVIDIA_NIM_API_KEYmodel path, and reviewer credential chain unchanged.COPILOT_GITHUB_TOKEN.Acceptance evidence
ContextualWisdomLab/mightyETLexactly once and retains all prior exact entries.@opencode-agent reviewmention on unchangedmightyETL#121receives a durable queued/accepted receipt rather than an allowlist rejection.2f374446b0e0dc180c53736787a2a7a9b331503fbefore review.After the variable change, rerun the exact-head OpenCode/Noema review for
mightyETL#121; do not reuse the earlier rejected receipts. This issue can close only after the accepted receipt and terminal review evidence are visible.