Skip to content

fix: use release app for Sourcebot sync - #23

Merged
brendan-kellam merged 1 commit into
mainfrom
brendan/use-release-app-secrets
Aug 10, 2026
Merged

fix: use release app for Sourcebot sync#23
brendan-kellam merged 1 commit into
mainfrom
brendan/use-release-app-secrets

Conversation

@brendan-kellam

@brendan-kellam brendan-kellam commented Aug 10, 2026

Copy link
Copy Markdown

Summary

  • use the existing release GitHub App credentials for the Sourcebot sync dispatch
  • retain the existing token scope and repository restriction

Testing

  • git diff --check

Note

Low Risk
Credential swap only; dispatch target and permissions are unchanged.

Overview
The Sync Sourcebot Zoekt Dependency workflow now authenticates with the release GitHub App (RELEASE_APP_ID / RELEASE_APP_PRIVATE_KEY) instead of dedicated Sourcebot sync app secrets.

Token scope is unchanged: same sourcebot-dev owner, sourcebot repo, and contents: write permission for the repository dispatch step.

Reviewed by Cursor Bugbot for commit 6a860c3. Bugbot is set up for automated code reviews on this repo. Configure here.

@brendan-kellam
brendan-kellam merged commit 3985dda into main Aug 10, 2026
19 checks passed
@brendan-kellam
brendan-kellam deleted the brendan/use-release-app-secrets branch August 10, 2026 19:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant