Skip to content

[deep-report] Fix firewall/MCP observability artifact retention — 92.9% of sampled runs missing access.log/gateway.jsonl #51111

Description

@github-actions

Description

The Observability Coverage Report (discussion #50953, 2026-08-07) sampled 14 recent workflow runs with AWF firewall and MCP runtime evidence active. Only 1 of 14 (7.1%) retained access.log (firewall egress audit log), and only 1 of 14 (7.1%) retained MCP JSONL telemetry (gateway.jsonl or rpc-messages.jsonl) — despite runtime logs confirming the firewall/MCP gateway topology was active in all 14 runs. Affected workflows include PR Code Quality Reviewer, Design Decision Gate, Impeccable Skills Reviewer, Issue Monster, Duplicate Code Detector, and more.

Expected Impact

Without these artifacts, egress behavior cannot be audited and tool-call traces cannot be reconstructed after a run — a critical blind spot for security review and debugging. Fix the artifact upload/retention step (likely a missing actions/upload-artifact step or a path/condition mismatch) so these logs are consistently saved across firewall- and MCP-enabled workflows.

Suggested Agent

New Agent, or the observability-coverage workflow maintainer

Estimated Effort

Medium (1-4 hours)

Data Source

DeepReport analysis 2026-08-07, discussion #50953 (Observability Coverage Report).

Generated by 🔬 Deep Report · agent · 156.7 AIC · ⌖ 37.4 AIC · ⊞ 11.5K ·

  • expires on Aug 9, 2026, 7:05 AM UTC-08:00

Metadata

Metadata

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions