Skip to content

ci: add permissions to publish caller job and upgrade release-please-action to v5#56

Open
kinyoklion wants to merge 1 commit into
mainfrom
devin/1778774646-fix-release-please-permissions
Open

ci: add permissions to publish caller job and upgrade release-please-action to v5#56
kinyoklion wants to merge 1 commit into
mainfrom
devin/1778774646-fix-release-please-permissions

Conversation

@kinyoklion
Copy link
Copy Markdown
Member

@kinyoklion kinyoklion commented May 14, 2026

Summary

Fixes Release Please startup_failure by adding explicit permissions to the call-workflow-publish caller job. Also upgrades release-please-action from v4 to v5.

Review & Testing Checklist for Human

  • Verify the release-please workflow runs without startup_failure on next push to main

Notes

Same fix pattern as dotnet-core PR #241. The publish caller job needs explicit permissions because publish.yml declares permissions that exceed the restricted org defaults.

Link to Devin session: https://app.devin.ai/sessions/54e32482848742c19ebf9c374efdc833
Requested by: @kinyoklion


Note

Low Risk
Low risk CI-only change; main risk is workflow permission scoping or action version upgrade affecting release/publish automation behavior.

Overview
Upgrades googleapis/release-please-action from v4.4.0 to v5.0.0 in .github/workflows/release-please.yml.

Adds explicit permissions (id-token: write, contents: write) to the call-workflow-publish reusable-workflow caller job so the publish workflow can run with the required token scopes when a release is created.

Reviewed by Cursor Bugbot for commit 29e374c. Bugbot is set up for automated code reviews on this repo. Configure here.

…action to v5

The release-please workflow fails with startup_failure because the
caller job invoking publish.yml does not declare explicit permissions.
Also upgrades release-please-action from v4 to v5.

Co-Authored-By: rlamb@launchdarkly.com <4955475+kinyoklion@users.noreply.github.com>
@devin-ai-integration
Copy link
Copy Markdown
Contributor

🤖 Devin AI Engineer

I'll be helping with this pull request! Here's what you should know:

✅ I will automatically:

  • Address comments on this PR. Add '(aside)' to your comment to have me ignore it.
  • Look at CI failures and help fix them

Note: I can only respond to comments from users who have write access to this repository.

⚙️ Control Options:

  • Disable automatic comment and CI monitoring

@kinyoklion kinyoklion marked this pull request as ready for review May 14, 2026 23:01
@kinyoklion kinyoklion requested a review from a team as a code owner May 14, 2026 23:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants