Skip to content

ci: authenticate project automation with a GitHub App - #247

Merged
ahmed-arb merged 1 commit into
releasefrom
ahmed-arb/project-app-token
Sep 16, 2026
Merged

ahmed-arb merged 1 commit into
releasefrom
ahmed-arb/project-app-token

Conversation

@ahmed-arb

Copy link
Copy Markdown
Contributor

Replaces the departed maintainer's personal access token with a short-lived token from the org-owned GitHub App, and bumps add-to-project to v2.0.0.

🤖 Generated with Claude Code

The auto-add workflow used a personal access token belonging to a single
maintainer. That maintainer left the organisation, so the token can no
longer write to the org project and every run fails with:

    regisb does not have the correct permissions to execute
    `AddProjectV2ItemById`

Mint a short-lived installation token from the organisation-owned
tutor-project-automation App instead, so the workflow no longer depends
on any one person's account. Also bump add-to-project to v2.0.0, which
runs on Node 24; the previous pin targets the deprecated Node 20.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
@ahmed-arb
ahmed-arb merged commit 3cee90e into release Sep 16, 2026
2 of 3 checks passed
@ahmed-arb
ahmed-arb deleted the ahmed-arb/project-app-token branch September 16, 2026 16:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant