Skip to content

ci: pin the reviewer to the release carrying credential redaction - #44

Merged
luckyPipewrench merged 1 commit into
mainfrom
ci/pin-reviewer-credential-redaction
Aug 18, 2026
Merged

luckyPipewrench merged 1 commit into
mainfrom
ci/pin-reviewer-credential-redaction

Conversation

@luckyPipewrench

Copy link
Copy Markdown
Owner

What changed

This moves the pinned reviewer commit to the release that redacts credential material before publishing model text. The reviewer posts its findings into pull-request comments, and a finding can quote the line it's describing, so until this pin moves that text reaches a public comment without being checked for credentials first.

Both pinned positions move together in a single commit, the workflow reference and the reviewer input. Leaving them out of step would run one commit's workflow against a different commit's reviewer, which is the failure this pinning exists to prevent, so a reviewer checking this change should confirm both moved and that no third commit is referenced anywhere in the file.

Nothing else in the caller changes. The trigger conditions, the authorization gate and the mapped secrets are untouched.

The shared reviewer publishes model findings into pull-request comments, and a
finding can quote the line it is describing. Until this pin moves, that text
reaches a comment without being checked for credential material first.

Both pinned positions move in this one commit. Leaving them out of step would run
one commit's workflow against a different commit's reviewer.
@coderabbitai

coderabbitai Bot commented Aug 18, 2026

Copy link
Copy Markdown

Important

  • 🔍 Trigger review

This repository does not receive automatic reviews because it has fewer than 10 stars.

⚙️ Run configuration

Configuration used: defaults

Review profile: CHILL

Plan: Pro Plus

Run ID: a94f2fd2-3eb9-4e69-b38a-a7761ea479c5


Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@luckyPipewrench
luckyPipewrench merged commit fc0a420 into main Aug 18, 2026
14 checks passed
@luckyPipewrench
luckyPipewrench deleted the ci/pin-reviewer-credential-redaction branch August 18, 2026 19:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant