Skip to content

[agent-suggestions] Agent suggestions - 2026-05-04 #1064

Description

@github-actions

Agent Suggestions

Date: 2026-05-04

1. Downstream Integration Drift Detector

Trigger: schedule (daily or weekly) + workflow_dispatch

Purpose: Detect downstream workflow integration drift for repos that consume elastic/ai-github-actions (mismatched workflow_run.workflows names, broken/missing auth token wiring, stale workflow references), and produce one actionable consolidated report.

Proposed safe outputs: create-issue (single grouped report), add-comment (optional run-level remediation notes), noop

Evidence:

Why not covered already:

Duplicate Checks

Downstream Signals

Suggested Next Steps

  • Add gh-aw-downstream-integration-drift-detector under gh-agent-workflows/ as a scheduled detector.
  • Validate workflow contract checks (trigger name matching, required secret/token wiring, stale reference checks) and group findings per downstream repo.
  • Implement dedupe so one open issue is updated instead of creating repeated noise for unchanged drift.

Note

🔒 Integrity filter blocked 94 items

The following items were blocked because they don't meet the GitHub integrity level.

  • #392 list_pull_requests: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #700 search_pull_requests: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #1025 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #405 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #333 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #357 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #359 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #354 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #301 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #167 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #129 search_issues: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #937 search_pull_requests: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #851 search_pull_requests: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #767 search_pull_requests: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #705 search_pull_requests: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • #703 search_pull_requests: has lower integrity than agent requires. The agent cannot read data with integrity below "approved".
  • ... and 78 more items

To allow these resources, lower min-integrity in your GitHub frontmatter:

tools:
  github:
    min-integrity: approved  # merged | approved | unapproved | none

What is this? | From workflow: Trigger Agent Suggestions

Give us feedback! React with 🚀 if perfect, 👍 if helpful, 👎 if not.

  • expires on May 11, 2026, 1:04 PM UTC

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions