Skip to content

Fix release approval notifications - #24906

Merged
dkirov-dd merged 1 commit into
masterfrom
bits/fix-release-notifications
Aug 20, 2026
Merged

Fix release approval notifications#24906
dkirov-dd merged 1 commit into
masterfrom
bits/fix-release-notifications

Conversation

@dkirov-dd

Copy link
Copy Markdown
Contributor

What does this PR do?

Uses the dedicated integrations-core-release-notifications dd-sts policy when sending pending release approval notifications. The policy is introduced by https://github.com/ddoghq/dd-source/pull/59600 and grants the short-lived application key the required workflows_run permission.

Motivation

Release notification jobs are failing with HTTP 403 when triggering the Datadog notification workflow, including https://github.com/DataDog/integrations-core/actions/runs/31813285530. The generic integrations-core policy has no Workflow Automation RBAC permissions.

Review checklist (to be filled by reviewers)

  • Feature or bugfix MUST have appropriate tests (unit, integration, e2e)
  • Add qa/required if this PR needs QA validation, or qa/skip-qa if it does not. Exactly one of the two is required.
  • If you need to backport this PR to another branch, you can add the backport/<branch-name> label to the PR and it will automatically open a backport PR once this one is merged

@dkirov-dd dkirov-dd added the qa/skip-qa Automatically skip this PR for the next QA label Aug 18, 2026
@dkirov-dd
dkirov-dd marked this pull request as ready for review August 20, 2026 09:56
@dkirov-dd
dkirov-dd requested a review from a team as a code owner August 20, 2026 09:56
AAraKKe
AAraKKe previously approved these changes Aug 20, 2026
@dkirov-dd
dkirov-dd force-pushed the bits/fix-release-notifications branch from b917fb4 to 3b9e97a Compare August 20, 2026 11:53
@temporal-github-worker-1
temporal-github-worker-1 Bot dismissed AAraKKe’s stale review August 20, 2026 11:53

Review from AAraKKe is dismissed. Related teams and files:

  • agent-integrations
    • .github/workflows/release-trigger.yml
@dd-octo-sts

dd-octo-sts Bot commented Aug 20, 2026

Copy link
Copy Markdown
Contributor

Validation Report

All 21 validations passed.

Show details
Validation Description Status
agent-reqs Verify check versions match the Agent requirements file
ci Validate CI configuration and code coverage settings
codeowners Validate every integration has a CODEOWNERS entry
config Validate default configuration files against spec.yaml
dep Verify dependency pins are consistent and Agent-compatible
http Validate integrations use the HTTP wrapper correctly
imports Validate check imports do not use deprecated modules
integration-style Validate check code style conventions
jmx-metrics Validate JMX metrics definition files and config
labeler Validate PR labeler config matches integration directories
legacy-signature Validate no integration uses the legacy Agent check signature
license-headers Validate Python files have proper license headers
licenses Validate third-party license attribution list
metadata Validate metadata.csv metric definitions
models Validate configuration data models match spec.yaml
openmetrics Validate OpenMetrics integrations disable the metric limit
package Validate Python package metadata and naming
qa-label Validate the pull request declares whether it needs QA for the next Agent release
readmes Validate README files have required sections
saved-views Validate saved view JSON file structure and fields
version Validate version consistency between package and changelog

View full run

@cit-pr-commenter-54b7da

cit-pr-commenter-54b7da Bot commented Aug 20, 2026

Copy link
Copy Markdown

evalya-impact-summary

evalya impact analysis
Impact analysis: RUN-ALL — every test task will run
Trigger:         empty diff (default branch, scheduled run, or shallow-clone fallback)
Test tasks:      0 (all selected)
Publish tasks:   1 (always emitted)
Diff:            empty (no diff information)

Learn more about CI impact filtering

@dkirov-dd
dkirov-dd added this pull request to the merge queue Aug 20, 2026
Merged via the queue into master with commit 3986634 Aug 20, 2026
35 checks passed
@dkirov-dd
dkirov-dd deleted the bits/fix-release-notifications branch August 20, 2026 12:23
@dd-octo-sts dd-octo-sts Bot added this to the 7.83.0 milestone Aug 20, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants