Repository navigation
ci: refuse GitHub-hosted runners and move those jobs to Blacksmith #18164
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Changes from all commits
8aa3418
ced1bb3
135a5f6
852b964
File filter
Filter by extension
Conversations
Jump to
Diff view
Diff view
There are no files selected for viewing
| Original file line number | Diff line number | Diff line change |
|---|---|---|
|
|
@@ -33,7 +33,7 @@ jobs: | |
| (github.event_name == 'issues' && github.event.issue.user.type == 'User' && (contains(github.event.issue.body, '@claude') || contains(github.event.issue.title, '@claude'))) | ||
| # Anyone can write @claude, and the job starts before the action checks | ||
| # write access, so no runner variable may pick the machine. | ||
| runs-on: ubuntu-24.04 # github-hosted-required: any commenter can start it | ||
| runs-on: ${{ github.repository_owner != 'manaflow-ai' && 'ubuntu-24.04' || contains(fromJSON('["ubuntu-24.04","blacksmith-2vcpu-ubuntu-2404","blacksmith-4vcpu-ubuntu-2404"]'), vars.CI_TRUSTED_RUNNER) && vars.CI_TRUSTED_RUNNER || 'blacksmith-4vcpu-ubuntu-2404' }} # ephemeral-required: any commenter can start it; CI_TRUSTED_RUNNER picks Blacksmith (default) or GitHub-hosted | ||
|
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. 📐 Maintainability & Code Quality | 🔵 Trivial | ⚡ Quick win Update the comment above Lines 34-35 say "no runner variable may pick the machine". Line 36 now reads 🤖 Prompt for AI Agents |
||
| timeout-minutes: 15 | ||
| # The workflow-level group only deduplicates webhook retries by event ID. | ||
| # The pinned action checks repository write access before it invokes Claude. | ||
|
|
||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
📐 Maintainability & Code Quality | 🟡 Minor | ⚡ Quick win
🔎 Supported by static analysis
🏁 Script executed:
Repository: manaflow-ai/cmux
Length of output: 1892
🏁 Script executed:
Repository: manaflow-ai/cmux
Length of output: 24354
🏁 Script executed:
Repository: manaflow-ai/cmux
Length of output: 9199
Describe the configured runner and fallback in both comments.
The CI runner documentation says
manaflow-aijobs do not use GitHub-hosted runners. It listsblacksmith-6vcpu-macos-15as both the intended runner and fallback forMACOS_RUNNER_BACKGROUND. The current comments misstate where these lanes run.Suggested comment updates
🧰 Tools
🪛 zizmor (1.30.1)
[warning] 1-202: overly broad permissions (excessive-permissions): default permissions used due to no permissions: block
(excessive-permissions)
[warning] 17-202: overly broad permissions (excessive-permissions): default permissions used due to no permissions: block
(excessive-permissions)
🤖 Prompt for AI Agents