Repository navigation
ci: raise reply agent to 120 turns; allowlist benign read/print tools - #262
Conversation
A feature-sized request to bestaxbot-reply (run 28991564529) burned all 60 turns mid-implementation and the runner died with everything uncommitted and no reply posted - the only write-capable agent still at 60 turns (loop fix: 120, implement: 150). Raise it to 120. Log census across three runs also shows benign denials wasting turns: gh issue view (4x in one loop fix run - allowed everywhere but there), awk (read-only slicing, same family as grep/sed/head), and echo/printf failing whole compound commands as the unapproved segment. Allowlist those; write-path denials (git apply, perl -i, rm, file-ops MCP) and the static-analyzer refusals stay as-is by design. Fixes #261
|
No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Path: .coderabbit.yaml Review profile: CHILL Plan: Pro Plus Run ID: 📒 Files selected for processing (3)
WalkthroughModifies three Claude GitHub Actions workflow files: increases --max-turns from 60 to 120 in bestaxbot-reply.yml, and adds new Bash tool permissions (awk, echo, printf, gh issue view) to the --allowedTools allowlists in claude-implement.yml and claude-pr-loop.yml. ChangesClaude Workflow Configuration Tuning
Estimated code review effort: 1 (Trivial) | ~3 minutes Possibly related issues
Possibly related PRs
🚥 Pre-merge checks | ✅ 3 | ❌ 2❌ Failed checks (2 warnings)
✅ Passed checks (3 passed)
✨ Finishing Touches🧪 Generate unit tests (beta)
Comment |
Preview DeploymentPreview URL: https://e106a73d.bestax.pages.dev |
|
Closing out the CodeRabbit review: the Generated by Claude Code |
|
🎉 This PR is included in version 3.2.0 🎉 The release is available on: Your semantic-release bot 📦🚀 |
|
🎉 This PR is included in version 1.0.0 🎉 The release is available on: Your semantic-release bot 📦🚀 |
|
🎉 This PR is included in version 1.0.0 🎉 The release is available on: Your semantic-release bot 📦🚀 |
Summary
Two changes from the run-log audit in #261:
bestaxbot-reply.yml:--max-turns 60→120. A feature-sized request (run 28991564529) burned all 60 turns mid-implementation — 24Edit/2Writecalls across a dozen files — and the runner died with everything uncommitted and no reply posted, so the PR just looked silent. The reply agent was the only write-capable agent still at 60 (loop fix step: 120, implement: 150).Allowlist benign tools whose denials wasted turns (evidence in ci: reply agent turn-caps at 60 losing all work; benign tool denials waste turns #261):
Bash(awk:*),Bash(echo:*),Bash(printf:*)for all three write-capable agents — read-only slicing / pure stdout;echo/printfdenials were failing whole compound commands as the unapproved segment. Output redirection remains separately sandbox-blocked.Bash(gh issue view:*)for the loop's fix step — denied 4× in one run; it's already allowed in reply + implement.Deliberately NOT added (per the #261 census):
git applyandperl -i(Bash write paths that would bypass #260'sEdit()/Write()protected-path deny rules),rm, the file-ops MCP commit tool (git-CLI steering stays), and the Bash static-analyzer refusals, which are safety behavior, not misconfiguration.Fixes #261
Test plan
Summary by CodeRabbit