Skip to content

test: harden workflow update failure recovery - #21

Merged
vitormattos merged 4 commits into
mainfrom
feat/failure-recovery-hardening
Sep 20, 2026
Merged

vitormattos merged 4 commits into
mainfrom
feat/failure-recovery-hardening

Conversation

@vitormattos

Copy link
Copy Markdown
Member

Summary

Advance #14 by making the failure paths explicit and testable.

Changes

  • fail early with a clear diagnostic when WORKFLOW_UPDATE_TOKEN is missing;
  • verify a broken downstream patch preserves the previous known-good generated template;
  • verify invalid catalog source metadata cannot partially modify the published catalog;
  • retain the existing consumer divergence protection tests.

Production finding

The first real post-merge executions of both:

  • Publish workflow catalog
  • Sync consumer workflows

failed at cross-repository checkout because WORKFLOW_UPDATE_TOKEN is not configured.

That operational dependency is now tracked separately in #20.

This PR does not weaken the credential requirement or fall back to the repository GITHUB_TOKEN, because that token is not intended to write across repositories.

@vitormattos
vitormattos merged commit 10e9552 into main Sep 20, 2026
4 of 5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant