.github/workflows/dependabot-automerge.yml was rewritten to the current pull_request_target policy (empty top-level permissions, job-scoped contents/pull-requests write, security/patch/actions eligibility, release-tooling denylist), but tests/ci/dependabot-automerge-contract.test.ts still encoded the pre-rewrite contract.App frontend build / test on main and every Dependabot PR. tauri-build-smoke then skipped via needs.app-frontend.result != 'failure', and CI Gate failed both jobs.auto-merge is limited to semver patch and minor — test forbade any third version-update:semver-* string; workflow correctly uses semver-major as an exclusion for github-actions bumps.denylists native audio... crates — test expected a crate DENYLIST:; workflow denylists googleapis/release-please-action / dependabot/fetch-metadata.keeps top-level permissions read-only — test expected contents: read; workflow intentionally uses permissions: {} + job-scoped write.CI=true node --run test -- --coverage → 212 files / 2371 tests passed; coverage above thresholds (83.5/76.6/79.5/84.4 vs 65/60/60/60).Updates the Dependabot auto-merge contract tests to match the current workflow.
The tests now verify:
pull_request_target security behavior.contents and pull-requests write permissions.github-actions updates.release-please-action and fetch-metadata.[!NOTE] Currently processing new changes in this PR. This may take a few minutes, please wait...
⚙️ Run configuration
Configuration used: Repository: thedavidweng/OpenKara/.coderabbit.yaml
Review profile: CHILL
Plan: Advanced
Run ID:
610e573c-1f01-45b6-805e-e1d743597993📥 Commits
Reviewing files that changed from the base of the PR and between 81460e9c904fdedf5be3ccfaec8afcc1ae1f4929 and 3099a0f288e178aa699a140ed02cc37dc99f2035.
📒 Files selected for processing (1)
tests/ci/dependabot-automerge-contract.test.ts
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.
Comment [@coderabbitai](/coderabbitai) help to get the list of available commands.
| Status | Category | Percentage | Covered / Total |
|---|---|---|---|
| 🟢 | Lines | 84.39% (🎯 65%) | 7626 / 9036 |
| 🟢 | Statements | 83.54% (🎯 65%) | 8080 / 9672 |
| 🟢 | Functions | 79.5% (🎯 60%) | 1878 / 2362 |
| 🟢 | Branches | 76.54% (🎯 60%) | 4400 / 5748 |
Sign in to comment.