Adds .github/workflows/autoupdate.yml (chinthakagodawita/autoupdate v1.7.0, MIT, SHA-pinned). On every push to main, it rebases any PR that has auto-merge enabled and has fallen behind — so the "require branches up to date" rule no longer needs manual branch updates. PR_FILTER: auto_merge leaves held/draft PRs (e.g. the review-gated spike) untouched.
Removes the dead merge_group: trigger from ci.yml (added in #139) — merge queue isn't available for this user-owned repo, so that event never fired.
⚠️ Requires a PAT to fully work
For the branch update to re-trigger the PR's CI (so it can then merge), the workflow must run with a PAT, not the default GITHUB_TOKEN — pushes by GITHUB_TOKEN don't start new workflow runs (GitHub anti-recursion). Create a fine-grained PAT scoped to this repo with contents: read/write + pull-requests: read/write and add it as the AUTOUPDATE_TOKEN repo secret. Without it, it falls back to GITHUB_TOKEN (updates the branch but won't re-run checks).
Workflow-only change; admin-merged past the E2E matrix (nothing app-side to test).
Two workflow-only changes:
1. **Adds `.github/workflows/autoupdate.yml`** (`chinthakagodawita/autoupdate` v1.7.0, MIT, SHA-pinned). On every push to `main`, it rebases any PR that has **auto-merge enabled** and has fallen behind — so the "require branches up to date" rule no longer needs manual branch updates. `PR_FILTER: auto_merge` leaves held/draft PRs (e.g. the review-gated spike) untouched.
2. **Removes the dead `merge_group:` trigger** from `ci.yml` (added in #139) — merge queue isn't available for this user-owned repo, so that event never fired.
## ⚠️ Requires a PAT to fully work
For the branch update to **re-trigger the PR's CI** (so it can then merge), the workflow must run with a PAT, not the default `GITHUB_TOKEN` — pushes by `GITHUB_TOKEN` don't start new workflow runs (GitHub anti-recursion). **Create a fine-grained PAT** scoped to this repo with `contents: read/write` + `pull-requests: read/write` and add it as the **`AUTOUPDATE_TOKEN`** repo secret. Without it, it falls back to `GITHUB_TOKEN` (updates the branch but won't re-run checks).
Workflow-only change; admin-merged past the E2E matrix (nothing app-side to test).
🤖 Generated with [Claude Code](https://claude.com/claude-code)
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Two workflow-only changes:
.github/workflows/autoupdate.yml(chinthakagodawita/autoupdatev1.7.0, MIT, SHA-pinned). On every push tomain, it rebases any PR that has auto-merge enabled and has fallen behind — so the "require branches up to date" rule no longer needs manual branch updates.PR_FILTER: auto_mergeleaves held/draft PRs (e.g. the review-gated spike) untouched.merge_group:trigger fromci.yml(added in #139) — merge queue isn't available for this user-owned repo, so that event never fired.⚠️ Requires a PAT to fully work
For the branch update to re-trigger the PR's CI (so it can then merge), the workflow must run with a PAT, not the default
GITHUB_TOKEN— pushes byGITHUB_TOKENdon't start new workflow runs (GitHub anti-recursion). Create a fine-grained PAT scoped to this repo withcontents: read/write+pull-requests: read/writeand add it as theAUTOUPDATE_TOKENrepo secret. Without it, it falls back toGITHUB_TOKEN(updates the branch but won't re-run checks).Workflow-only change; admin-merged past the E2E matrix (nothing app-side to test).
🤖 Generated with Claude Code