Skip to content

ci: fast-forward main when the bump PR merge is refused - #201

Merged
Larry-Osakwe merged 1 commit into
mainfrom
larry-osakwe/bump-ff-bypass
Jul 20, 2026
Merged

ci: fast-forward main when the bump PR merge is refused#201
Larry-Osakwe merged 1 commit into
mainfrom
larry-osakwe/bump-ff-bypass

Conversation

@Larry-Osakwe

Copy link
Copy Markdown
Contributor

What

Third act of the bump saga. #194's direct merge deployed and ran, and GitHub refused it: base branch policy prohibits the merge (run 29761405739, PR #200 sat open and 0.21.1 stalled).

The evidence says the ruleset bypass (keycard-gh-workflows-access, actor 2798702, bypassMode always, per keycardlabs/infra Pulumi) covers ref pushes but the PR merge API doesn't exercise it: the same app direct-pushes bump commits to go-sdk main, which the ruleset's pull_request rule would otherwise forbid, while its merge calls here get refused.

So: when the direct merge is refused, fast-forward refs/heads/main to the PR head via the refs API (force=false, so it only succeeds when main hasn't moved). GitHub marks the PR merged and the existing tag step proceeds at that SHA. Auto-merge stays armed and the #194 recovery pre-check still backstops any remaining stall.

Ordering of fallbacks per green-checks poll cycle (max 3): merge API → ref fast-forward → keep waiting.

Twin PR in typescript-sdk.

🤖 Generated with Claude Code

The ruleset bypass covers ref pushes but the PR merge API does not
exercise it: the app merges bump PRs on go-sdk by direct push while the
same app gets "base branch policy prohibits the merge" here (run
29761405739, PR #200). When the direct merge is refused, fast-forward
main to the PR head via the refs API; GitHub marks the PR merged and
the tag step proceeds at that SHA. Auto-merge stays armed and the
recovery pre-check still backstops both.
@Larry-Osakwe
Larry-Osakwe merged commit bfcbc7d into main Jul 20, 2026
5 checks passed
@Larry-Osakwe
Larry-Osakwe deleted the larry-osakwe/bump-ff-bypass branch July 20, 2026 17:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants