Repository navigation
fix: retry the merged pull request lookup before refusing a production push - #930
Merged
Merged
Conversation
…n push GitHub links a merge commit to its pull request a few seconds after the push. The Cloud Deploy authorization asked once, six seconds after the merge of #929, found no pull request, and refused the deploy as a direct push; 51edc40 failed the same way on 2026-10-08. It now asks up to seven times, ten seconds apart, before refusing.
Contributor
There was a problem hiding this comment.
✅ No new issues found.
Reviewed changes
Reviewed the production push authorization retry and the matching operations note.
- Merge lookup retry: On a
push, Authorize Production SHA now queriescommits/<sha>/pullsup to seven times, ten seconds apart, before refusing a SHA that is not yet the merge commit of a pull request merged intomain. - Runbook:
docs/cloud-operations.mdrecords that the check waits about a minute for GitHub to link the merge commit.
grok-4.7 | 𝕏
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.

Summary
The Cloud Deploy run for the merge of #929 (run 38094043602) failed at Authorize Production SHA: "Refusing a direct push: eaef88b… is not the merge commit of a PR merged into main". The commit is the merge commit of #929.
GitHub links a merge commit to its pull request a few seconds after the push. The gate called
commits/<sha>/pullsonce, 6 seconds after the merge, and got no pull request. The same query returns #929 now.51edc40defailed the same way on 2026-10-08 (run 37708708117).The gate now asks up to seven times, 10 seconds apart (about a minute, well inside the job's 5-minute timeout), before refusing. The refusal itself and every other check are unchanged.
docs/cloud-operations.mdsays so.Screenshots
No visual change.
Testing
bash -n.eaef88banow returns feat: bring the mcp to parity with the app and cli #929, which a retried check would have found.mainand would deploy production.Security Audit
Notes
#929 is merged but not deployed: Deploy Production was skipped. Deploying needs either a re-run of the failed run (its retried authorization now passes) or the push that merging this PR causes. Either one deploys
mainto production, including #929. Webhooks stay off untilALERA_WEBHOOK_SECRET_KEYis configured, andMCP_EVENTS_ENABLEDdefaults to off.