Skip to content

fix: harden consumer sync across organizations - #61

Merged
vitormattos merged 4 commits into
mainfrom
fix/cross-org-sync-and-stale-lock
Sep 20, 2026
Merged

vitormattos merged 4 commits into
mainfrom
fix/cross-org-sync-and-stale-lock

Conversation

@vitormattos

Copy link
Copy Markdown
Member

Summary

Fix two issues found while validating LibreSign as a consumer of the materialized workflow sync model.

  • use ${{ github.repository_owner }} instead of hard-coding LibreCodeCoop when creating the GitHub App token;
  • remove stale .github/actions-lock.txt entries for workflows that no longer exist in the organization catalog, without deleting the consumer-local workflow file;
  • add regression coverage for stale lock cleanup.

This keeps the sync generic across organizations and avoids carrying legacy lock entries indefinitely.

Signed-off-by: Vitor Mattos <vitor@php.rio>
Signed-off-by: Vitor Mattos <vitor@php.rio>
Signed-off-by: Vitor Mattos <vitor@php.rio>
Signed-off-by: Vitor Mattos <vitor@php.rio>
@vitormattos
vitormattos merged commit 713dffc into main Sep 20, 2026
6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant