Skip to content
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
12 changes: 8 additions & 4 deletions .github/workflows/claude-code-review.yml
Original file line number Diff line number Diff line change
Expand Up @@ -36,10 +36,14 @@ jobs:
uses: anthropics/claude-code-action@v1
with:
claude_code_oauth_token: ${{ secrets.CLAUDE_CODE_OAUTH_TOKEN }}
# Allow review of PRs opened by github-actions[bot], such as the
# monthly SECURITY.md rotation. Without this the job fails with
# "Workflow initiated by non-human actor".
allowed_bots: 'github-actions'
# Allow review of PRs opened or pushed by trusted bot actors.
# Without this the job fails with "Workflow initiated by non-human
# actor". github-actions covers the monthly SECURITY.md rotation;
# cursor covers the Cursor cloud agent, which pushes to cursor/*
# branches on our own PRs. The review prompt below is fixed by this
# workflow, so an allowed bot cannot influence what Claude is asked
# to do -- it only gets the same code review a human push would.
allowed_bots: 'github-actions,cursor'

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🔍 Required bot-path test is deferred

This R3 change lacks an automated test proving cursor[bot] passes while unlisted bots remain denied. The testing policy requires staging verification before merge.

Devin Review

Was this helpful? React with 👍 or 👎 to provide feedback.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🟥 Bot-triggered reviews expose privileged credentials

Any cursor bot push can trigger a checkout and model review with OAuth and OIDC credentials. Fork or compromised-agent changes can target the action’s execution environment.

Devin Review

Was this helpful? React with 👍 or 👎 to provide feedback.

plugin_marketplaces: 'https://github.com/anthropics/claude-code.git'
plugins: 'code-review@claude-code-plugins'
prompt: '/code-review:code-review ${{ github.repository }}/pull/${{ github.event.pull_request.number }}'
Expand Down
Loading