fix(ci): preserve only deployment-owned workflows - #40
Conversation
[skip-regression-check]
08b1efc to
78fec39
Compare
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: 08b1efc232
ℹ️ About Codex in GitHub
Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".
| target_owned_workflows=( | ||
| .github/workflows/pilot-linux-artifact.yml | ||
| .github/workflows/regression-test-check.yml | ||
| ) | ||
| git checkout "refs/remotes/deployment_mirror/${TARGET_BRANCH}" -- "${target_owned_workflows[@]}" |
There was a problem hiding this comment.
Filter source schedules before mirroring
With this allowlist checkout, every other source workflow remains in the tree that git write-tree pushes. In a deployment mirror where deployment-target is the default branch, unguarded source schedules such as .github/workflows/live-canary.yml (0 */6 * * *) and nightly CI will start running in the mirror after merge instead of only PR validation workflows. Please remove or explicitly allowlist source workflows before creating the mirror commit.
Useful? React with 👍 / 👎.
Summary
Tests