Repository navigation
feat: implement issue #903 — Add MCP/Context7 connectivity assertion to daily-pr-review-health - #904
Conversation
|
You have reached your Codex usage limits for code reviews. You can see your limits in the Codex usage dashboard. |
|
Warning Review limit reached
More reviews will be available in 40 minutes and 12 seconds. Learn how PR review limits work. Your organization has used up its prepaid credits, and credit purchases are no longer available. Enable the review add-on in the billing tab to keep reviews running — you're only billed for reviews past your plan's rate limits ($0.25/file). ⌛ How to resolve this issue?After more reviews become available, a review can be triggered using the To avoid repeated limits, reduce automatic review volume by pausing incremental auto-reviews earlier, using label-based review opt-in, excluding WIP or generated PR titles, or requesting reviews manually when the PR is ready. If your team needs uninterrupted high-volume reviews, an organization admin can enable usage-based credits. 🚦 How do rate limits work?CodeRabbit enforces per-developer PR review limits for each organization. Most developers receive the normal plan refill rate. For paid Pro and Pro+ PR reviews, CodeRabbit uses rolling per-developer review limits. Reviews become available again as older review attempts age out of the rolling limit window. Please see our Fair Usage Limits Policy for further information. ℹ️ Review info⚙️ Run configurationConfiguration used: Organization UI Review profile: ASSERTIVE Plan: Pro Run ID: 📒 Files selected for processing (4)
✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
There was a problem hiding this comment.
Code Review
This pull request introduces scripts/mcp_connectivity_check.sh and its corresponding BATS tests to provide a durable, affirmative MCP connectivity assertion monitor. The review feedback identifies a critical issue where the script could prematurely exit under set -euo pipefail if grep finds no matching handshake lines, and suggests appending || true to the pipeline. Additionally, the reviewer recommends adding an explicit dependency check for jq to prevent silent failures, and points out a redundant assertion in the test suite.
Dev-Lead — review-changes (applied)Changes committed and pushed. |
|
Advisory bots were rate-limited; auto-approval is withheld until they recover. pr-review-sweep will re-review this PR after 2026-06-22T02:38:59Z. |
Dev-Lead — fix-reviews (no-changes)Agent reasoning |
Dev-Lead — review-changes (no-changes)No changes were needed for this PR. |
|
Advisory bots were rate-limited; auto-approval is withheld until they recover. pr-review-sweep will re-review this PR after 2026-06-22T04:03:56Z. |
Dev-Lead — review-changes (no-changes)No changes were needed for this PR. |
|
Advisory bots were rate-limited; auto-approval is withheld until they recover. pr-review-sweep will re-review this PR after 2026-06-22T04:21:14Z. |
|
Auto-rebase failed — merge conflict — this branch has conflicts with dev-lead will attempt to resolve this automatically. If it cannot, a follow-up comment will explain what needs manual attention. To resolve manually instead: |
Dev-Lead — review-changes (no-changes)No changes were needed for this PR. |
|
Advisory bots were rate-limited; auto-approval is withheld until they recover. pr-review-sweep will re-review this PR after 2026-06-22T06:42:09Z. |
Superseded by automated re-review at
|
a700cda to
f10c6a5
Compare
Dev-Lead — rebase (applied)Rebase completed and pushed. |
Dev-Lead — review-changes (no-changes)No changes were needed for this PR. |
Dev-Lead — review-changes (no-changes)No changes were needed for this PR. |
Dev-Lead — fix-bot-comment (applied)Changes committed and pushed. |
|
Dev-Lead — review-changes (no-changes)No changes were needed for this PR. |
donpetry-bot
left a comment
There was a problem hiding this comment.
Automated review — APPROVED ✓
Risk: MEDIUM
Reviewed commit: f7053fca944db12a5f09734cc058a7a130ebc635
Review mode: triage-approved (single reviewer)
Summary
Refactors scripts/mcp_connectivity_check.sh into pure, unit-tested helpers (classify_mcp_output / mcp_check_is_failure / derive_allowed_tools / mcp_check_report) plus an I/O main(), and wires the daily health-check step behind a hashFiles('.github/review-mcp.json') guard. Net +354/-326 across 4 files; CI-only monitoring tooling.
Linked issue analysis
Closes #903 (part of #676). The PR delivers the durable, affirmative MCP/Context7 connectivity assertion the issue calls for: it drives the configured server(s) through the same flags engine.sh uses (--mcp-config --strict-mcp-config --debug mcp) and fails the daily health check when MCP is configured but unreachable. .github/review-mcp.json is present in the repo, so the new hashFiles guard fires and the monitor actually runs rather than no-opping.
Findings
No blocking findings.
- Advisory bot (gemini-code-assist) had flagged a set -euo pipefail premature-exit on the handshake grep, a missing jq dependency guard, and a redundant test assertion. The current head incorporates the fixes: '|| true' terminates the handshake-emit pipeline, an explicit jq guard returns 1 with ::error::, and a 'main: jq missing' test covers it.
- Deliberate, internally-consistent behavior changes vs. the prior version: (a) an explicitly-set-but-missing REVIEW_MCP_CONFIG now no-ops (exit 0) instead of fail-loud (exit 1) — moot in practice behind the workflow hashFiles guard; (b) classify_mcp_output returns CONNECTED when any handshake is present even if a later line shows a failure (handshake-wins). For the single-server Context7 use case this is fine; worth a note only if multi-server configs are later added.
- Security: no secrets/credentials; cfg/allowed/model passed positionally to claude/jq (no shell injection); workflow change is an if-guard tightening plus adding the bats file to the lint list — no GitHub Actions security smells.
CI status
All required checks green: shellcheck/ShellCheck, bats, unit-tests, Lint, CodeQL (actions+python), Secret scan (gitleaks), SonarCloud, AgentShield, validate-agent-profiles, holdout-guard, guard. dependency-audit ecosystem jobs and dependabot-automerge correctly SKIPPED. CodeRabbit check state SUCCESS.
Reviewed automatically by the PR-review agent (single-reviewer mode: fable 5). Reply if you need a human review.
…to daily-pr-review-health (#904) * feat: implement issue #903 — Add MCP/Context7 connectivity assertion to daily-pr-review-health * chore: apply manual instructions [skip ci-relay] * fix(bot): address bot feedback [skip ci-relay] --------- Co-authored-by: donpetry-bot <281750570+donpetry-bot@users.noreply.github.com>



Closes #903
Implemented by dev-lead agent. Please review.