Skip to content

fix(github-mcp-tools-report): add protected-files: fallback-to-issue to prevent safe_outputs hard failure#28619

Merged
pelikhan merged 2 commits intomainfrom
copilot/add-protected-files-fallback-to-issue
Apr 26, 2026
Merged

fix(github-mcp-tools-report): add protected-files: fallback-to-issue to prevent safe_outputs hard failure#28619
pelikhan merged 2 commits intomainfrom
copilot/add-protected-files-fallback-to-issue

Conversation

Copy link
Copy Markdown
Contributor

Copilot AI commented Apr 26, 2026

The github-mcp-tools-report workflow was hard-failing in safe_outputs whenever the agent's patch touched .github/aw/github-mcp-server.md (a protected file), wasting ~$1.64 in inference per blocked run.

Changes

  • github-mcp-tools-report.md — adds protected-files: fallback-to-issue to the safe-outputs.create-pull-request frontmatter block so the system creates a review issue with the patch attached instead of erroring out
  • github-mcp-tools-report.lock.yml — recompiled; now emits "protected_files_policy":"fallback-to-issue" in the safe outputs config
safe-outputs:
  create-pull-request:
    expires: 2d
    title-prefix: "[mcp-tools] "
    labels: [documentation, automation]
    reviewers: copilot
    draft: false
    protected-files: fallback-to-issue  # ← added

…t workflow

Agent-Logs-Url: https://github.com/github/gh-aw/sessions/2d52784d-f27d-4c1a-84bb-8ac5991fa577

Co-authored-by: gh-aw-bot <259018956+gh-aw-bot@users.noreply.github.com>
Copilot AI changed the title [WIP] Add protected-files: fallback-to-issue to prevent safe_outputs job failure fix(github-mcp-tools-report): add protected-files: fallback-to-issue to prevent safe_outputs hard failure Apr 26, 2026
Copilot AI requested a review from gh-aw-bot April 26, 2026 18:01
@pelikhan pelikhan marked this pull request as ready for review April 26, 2026 18:02
Copilot AI review requested due to automatic review settings April 26, 2026 18:02
@pelikhan pelikhan merged commit 786e457 into main Apr 26, 2026
19 checks passed
@pelikhan pelikhan deleted the copilot/add-protected-files-fallback-to-issue branch April 26, 2026 18:02
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the github-mcp-tools-report workflow’s Safe Outputs configuration to avoid hard failures when a protected file is touched, falling back to creating an issue with the patch instead.

Changes:

  • Add protected-files: fallback-to-issue to the safe-outputs.create-pull-request frontmatter in the workflow source.
  • Recompile the workflow lockfile so the generated Safe Outputs JSON includes "protected_files_policy":"fallback-to-issue".
Show a summary per file
File Description
.github/workflows/github-mcp-tools-report.md Adds protected-files: fallback-to-issue to Safe Outputs PR creation config.
.github/workflows/github-mcp-tools-report.lock.yml Regenerated compiled workflow to emit protected_files_policy: fallback-to-issue in Safe Outputs config/handler env.

Copilot's findings

Tip

Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

  • Files reviewed: 2/2 changed files
  • Comments generated: 0

@github-actions github-actions Bot mentioned this pull request Apr 26, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[aw-failures] github-mcp-tools-report: add protected-files: fallback-to-issue to prevent safe_outputs job failure

4 participants