Skip to content

Fail closed when more than one main-ci ruleset exists - #2

Merged
kuker24 merged 1 commit into
mainfrom
fail-closed-duplicate-main-ci
Aug 16, 2026
Merged

Fail closed when more than one main-ci ruleset exists#2
kuker24 merged 1 commit into
mainfrom
fail-closed-duplicate-main-ci

Conversation

@kuker24

@kuker24 kuker24 commented Aug 16, 2026

Copy link
Copy Markdown
Owner

Why

enable-main-protection.sh still auto-picked the first main-ci when duplicates existed. That is the wrong policy.

Change

0 main-ci → POST
1 main-ci → PUT
>1 main-ci → FAIL, list ids, ask a human

Also stop dumping the raw GitHub JSON on success.

VERSION stays 1.1.1. No installer/vendor/doctor changes. Live GitHub currently has exactly one main-ci, so this is fail-closed for a future footgun, not a live incident.

Do not pick the first duplicate id. Ask a human to resolve, then re-run.
@kuker24
kuker24 merged commit 7a5687e into main Aug 16, 2026
1 check passed
@kuker24
kuker24 deleted the fail-closed-duplicate-main-ci branch August 16, 2026 02:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant