INFRA-136: add standard labeler caller #11
1 changed files with 11 additions and 0 deletions
11
.github/workflows/labeler.yaml
vendored
Normal file
11
.github/workflows/labeler.yaml
vendored
Normal file
|
|
@ -0,0 +1,11 @@
|
|||
name: Labeler
|
||||
|
|
||||
on:
|
||||
pull_request:
|
||||
branches: [main]
|
||||
permissions:
|
||||
contents: read
|
||||
pull-requests: write
|
||||
issues: write
|
||||
jobs:
|
||||
label:
|
||||
uses: Sea-Haven-Industries/.github/.github/workflows/callable-labeler.yaml@fd60e4c9041784f666ac0fdefb9bec3c7fbf5143 # main
|
||||
Reference in a new issue
🟡 Reusable workflow pinned to floating @main
The caller workflow references
Sea-Haven-Industries/.github/.github/workflows/callable-labeler.yaml@main. The repo's existingci.yamlanddeploy.yamlpin the reusable workflow to a specific SHA (fd60e4c...) with a# maincomment, but this new file uses a floating ref. This contradicts the established pattern and allows the callable workflow to change without a corresponding PR in this repo, causing non-reproducible builds and potentially breaking labeler permissions/silently failing on a future upstream update. The PR description says it uses@mainto match the existing idiom, but the existing files actually pin to SHA. Ifmainis the intended idiom,ci.yaml/deploy.yamlshould be updated too; otherwise this file should pin to the same SHA as the others.(Refers to line 11)
Your feedback helps Open SWE learn. React with 👍 or 👎 to tell us if this review comment was useful.