Repository navigation
Use artifact-free team-memory reconciliation with standalone dispatch - #51
Merged
Changyong Gong (chagong) merged 3 commits intoOct 9, 2026
Merged
Conversation
Preserve the IssueLens pilot payload and source artifact contract while adding validated explicit coordinator targets and independent target authentication. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
Keep push artifacts request-owned and move coordinator source verification and pinned downloads into the shared invocation action before Azure login. Make coordinator dispatch self-contained and caller-payload driven, with no sibling scripts or job-specific behavior. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
Centralize source/run validation, bounded commit pagination and PR discovery in the invocation action. Keep source workflows artifact-free and dispatch standalone, with trusted cross-source configuration and independent read credentials. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
There was a problem hiding this comment.
🔵 Needs a closer look
Security-sensitive workflow authentication and cross-repository operational behavior still require final human validation despite passing CI.
0 open findings
What changed in this PR
Replaces artifact-based team-memory coordination with bounded, artifact-free range reconciliation while preserving the central queue and trust boundaries.
Changes:
- Adds a standalone, pinned workflow-dispatch transport.
- Moves source, ancestry, pagination, and PR validation into preflight.
- Updates workflows, documentation, and comprehensive tests.
| File | Description |
|---|---|
tests/test_workflow_dispatch_action.py |
Tests standalone dispatch behavior and security. |
tests/test_team_memory_workflow.py |
Updates workflow contract tests. |
tests/test_team_memory_coordinator.py |
Tests reconciliation and cross-repository validation. |
tests/test_ci_workflow.py |
Verifies expanded syntax checks. |
github_app_mcp/README.md |
Documents artifact-free orchestration. |
docs/guide.md |
Updates operational guidance. |
CONTRIBUTING.md |
Adds action layout and validation commands. |
.github/workflows/team-memory-post-merge.yml |
Dispatches the immutable standalone action. |
.github/workflows/team-memory-coordinator.yml |
Accepts run/range reconciliation inputs. |
.github/workflows/ci.yml |
Compiles the new action code. |
.github/copilot-instructions.md |
Updates repository architecture guidance. |
.github/actions/queue-team-memory/README.md |
Defines the generic dispatch contract. |
.github/actions/queue-team-memory/dispatch.py |
Implements bounded target validation and dispatch. |
.github/actions/queue-team-memory/action.yml |
Exposes the standalone transport inputs. |
.github/actions/issuelens/README.md |
Documents coordinated reconciliation. |
.github/actions/issuelens/issuelens_action.py |
Implements source and range preflight validation. |
.github/actions/issuelens/action.yml |
Adds source reconciliation inputs. |
🧠 Review effort: Balanced
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Changyong Gong (chagong)
deleted the
chagong-reusable-cross-repo-dispatcher
branch
October 9, 2026 12:19
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Architecture
Implement the approved artifact-free reconciliation design in IssueLens only:
.github/actions/queue-team-memoryaction with five scalar fields:source_repository,source_run_id,source_run_attempt,push_before, andpush_after. No source checkout, preparation helper, upload, or download remains. The existing generic dispatch implementation is unchanged and pinned to published revision296350903a578f3bcd847b34ce85b51e90b4b919..github/actions/issuelens. Automatic ranges and manual PR selections share that queue.Trust and Compatibility
after/head but cannot establish originalbeforeor push flags. The task explicitly preserves this limitation; no original-event snapshot, digest, or artifact lifetime is claimed.source-artifact-id,prepare-source, andvalidate-source; supply run ID/attempt plus full nonzero before/after SHAs, or one manual PR, never both. Invocation returns to preflight/login/submit. Issue-loop, direct task, direct push, and legacy/manual external callers keep their behavior and receipt contracts.source-repositoriesmap of canonical names to immutable numeric IDs, never from dispatched inputs. Cross-repository sources and coordinators must both be public, with independent source Contents/Actions/Pull requests read credentials. Sourcedevelopand coordinatormainremain independent.No live dispatch, agent invocation/deployment, wiki publication, workflow enablement, credential installation, or merge was performed.
Validation
293649325caa3df4996a211d1248f0b461b65e9b.git diff --check, and self-review passed.Mocked/local and hosted CI checks do not establish live App permissions, dispatch delivery, OIDC federation, hosted readiness, or wiki publication. The PR remains open and unmerged.