fix: regenerate catalog with the built-in GitHub token - #117
Draft
chocholous wants to merge 1 commit into
Draft
chocholous wants to merge 1 commit into
chocholous wants to merge 1 commit into
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Catalog regeneration currently fails after merges because it requires an unconfigured GitHub App. Use the built-in GITHUB_TOKEN with contents:write only in the regenerate job; other jobs retain contents:read. Remove App credentials and App-specific identity lookup, and use the standard GitHub Actions bot identity. Keep strict validation, serialization and push retries. Include the workflow itself in the push path filter so merging this fix triggers regeneration, and explicitly target main when pushing.
Verified in apify/awesome-skills on an isolated branch with the same generation/authentication steps and branch-specific targets:
Functional test, two successful attempts.
The main-branch push has not been exercised by this test; it becomes the production verification after this PR is merged. Current main reports no branch protection or applicable rulesets.