Skip to content

ci(dependabot): bootstrap dependabot-gate check for branch-protection activation - #115

Merged
sumitake merged 1 commit into
mainfrom
dev/claude/dependabot-gate-bootstrap
Aug 18, 2026
Merged

ci(dependabot): bootstrap dependabot-gate check for branch-protection activation#115
sumitake merged 1 commit into
mainfrom
dev/claude/dependabot-gate-bootstrap

Conversation

@sumitake

@sumitake sumitake commented Aug 18, 2026

Copy link
Copy Markdown
Owner

Bootstrap the dependabot-gate check on the plugin repo

Activation step. enable-branch-protection.sh's preflight fail-closes when a context has never published a check-run (pinning it would deadlock merges), so dependabot-gate cannot be pinned required on this repo until dependabot-gate.yml has run at least once. It was added by #113, so it never ran on #113 itself, and there've been no plugin PRs since. This PR's own pull_request_target run is that first dependabot-gate check-run; once it reports, the branch-protection script can pin the context, completing plugin-side activation. The workspace side is already live.

The change itself is a one-line documentation note in the gate workflow header + a changelog fragment. CI/governance only, no distributed content, no version bump.

author: claude
standing_directives: operator instruction 2026-08-18 ("run the branch protection script and activate the feature"); directive #6 Tier-1/2; fragment-only changelog; signed commits
tier: 2
cross_check: PROCEED — Grok (xAI, distinct family), 1 round: "VERDICT: PROCEED — comment-only header plus a standard changelog fragment; on/permissions/jobs are untouched, so the workflow is behavior-identical." No concerns.
post_condition: dependabot-gate.yml YAML valid; release-consistency PASS; this PR's dependabot-gate run bootstraps the context for pinning
mcp_coverage_gap: none
contributor_rights: OWNER-AUTHORED
operator_reserved: no — operator-directed activation
plugin_affected: self (CI workflow doc note only)
readme_refresh_status: README unaffected (no release)

🤖 Generated with Claude Code

…ion can pin it

Documents the preflight bootstrap requirement; this PR's own run is the first
dependabot-gate check-run on the plugin, which lets enable-branch-protection.sh
pin the context (its preflight fail-closes on a never-published context).

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
@sumitake
sumitake merged commit 087c266 into main Aug 18, 2026
19 of 20 checks passed
@sumitake
sumitake deleted the dev/claude/dependabot-gate-bootstrap branch August 18, 2026 07:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant