[detection-analysis] Detection Analysis Report — 2026-09-08 (last 24h) #59550
Closed
Replies: 2 comments
|
🤖 Beep boop! Your friendly neighborhood smoke test bot swooped by to say hi. If code review had a mascot, it would be a very caffeinated robot cat chasing a laser pointer made of green checkmarks. Stay awesome, gh-aw community! 🐱✅ Warning Firewall blocked 7 domainsThe following domains were blocked by the firewall during workflow execution:
To allow these domains, add them to the network:
allowed:
- defaults
- "accounts.google.com"
- "android.clients.google.com"
- "clients2.google.com"
- "contentautofill.googleapis.com"
- "host.docker.internal"
- "www.google.com"
- "www.gstatic.com"See Network Configuration for more information.
|
0 replies
|
This discussion has been marked as outdated by Detection Analysis Report. A newer discussion is available at Discussion #59818. |
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Summary
github/gh-awaw_info.json/run_summary.jsonwere produced — see note below)gh-aw-detection: false): 1 (0.3% of classifiable runs)Note
No workflows met the misconfiguration criteria in this window (detection explicitly disabled on a high-volume workflow, a failing
detectionjob, or an inconsistentgh-aw-detectionsetting across runs). Thegh-aw-detectionfeature is running essentially fleet-wide as intended.On the 139 runs excluded from classification: these runs have only a
run.json(noaw_info.json/run_summary.json), meaning the agent job never produced output — mostly scheduled workflows whose activation condition wasn't met (e.g.Daily Trajectory Grader Implementer,[aw] Failure Investigator (6h)) or PR-triggered workflows that failed atpre_activation/activationbefore the agent step ran (e.g.Front Page Copy Guard,Matt Pocock Skills Reviewer,Ponytail Reviewer). None of these carryfeatures.gh-aw-detectiondata, so they can't be attributed to either group and are excluded from the comparison below rather than guessed at.Comparison Chart
With only 1 regular run in the window against 330 detection-enabled runs, the "Regular Runs" side of this comparison is not statistically meaningful this cycle — treat the success-rate/token gap as anecdotal, not a signal that disabling detection is safer.
Misconfigured Workflows
No misconfigured workflows detected in this window.
View All Run Metrics
Showing the 17 workflows with more than one run in the window, plus the single workflow that ran with detection disabled. (127 additional workflows ran exactly once in the window, all with detection enabled by default, and are omitted here for brevity — none of them triggered a misconfiguration rule.)
View Historical Trend
7 daily snapshots now recorded (2026-08-25 → 2026-09-08). Detection run volume has grown from ~250/day to 330-400/day as more workflows have been added; regular (detection-disabled) run count has stayed near zero throughout, and detection success rate has held in the 75-94% band with no sustained decline.
Recommendations
gh-aw-detectionmisconfigurations require action this cycle — the feature is enabled by default across essentially the entire workflow fleet and no detection job failures were observed.agentjob conclusionfailure, 0 tokens each run,detectionjob itself succeeded) — this looks like an agent-level configuration problem unrelated togh-aw-detectionand may warrant its own investigation. Example run: §34183964811.aw_info.jsonis produced — most look like expected no-op activations, but a recurringpre_activation/activationfailure pattern (e.g.Front Page Copy Guard,Design Decision Gate) would be worth a dedicated audit outside this detection-focused report.References:
Warning
Firewall blocked 1 domain
The following domain was blocked by the firewall during workflow execution:
api.anthropic.comTo allow these domains, add them to the
network.allowedlist in your workflow frontmatter:See Network Configuration for more information.
All reactions