Skip to content

Fix public workflow footgun guardrail inputs - #760

Merged
haasonsaas merged 1 commit into
mainfrom
codex/public-workflow-footgun-fix-20260602
Jun 2, 2026
Merged

Fix public workflow footgun guardrail inputs#760
haasonsaas merged 1 commit into
mainfrom
codex/public-workflow-footgun-fix-20260602

Conversation

@haasonsaas

Copy link
Copy Markdown
Contributor

Summary

  • make EvalOpsBot requested-review dispatch skip gracefully when EVALOPS_PR_LENS_TOKEN is unavailable
  • request both contents: write and workflows: write on the public release mirror app token

Context

This is the public-owned workflow companion for the generated mirror PR #759. The generated branch brings in check:workflow-footguns, but public-owned workflows are excluded from the internal mirror, so they need a public-side base fix before #759 can pass the new guardrail.

Proof

  • node /Users/jonathanhaas/Documents/Projects/maestro-exec-entrypoint-runtime-slice-20260601/scripts/check-workflow-footguns.mjs from this public checkout
  • actionlint -shellcheck= -pyflakes= .github/workflows/evalopsbot-review-request.yml .github/workflows/public-release-mirror.yml

Unblocks #759 and issue #461.

@haasonsaas
haasonsaas merged commit 369dc53 into main Jun 2, 2026
12 checks passed
@haasonsaas
haasonsaas deleted the codex/public-workflow-footgun-fix-20260602 branch June 2, 2026 07:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant