Skip to content

Remove unreliable GitGuardian Actions workflow - #21

Merged
SamErde merged 1 commit into
mainfrom
samerde-remove-gitguardian-workflow
Oct 1, 2026
Merged

SamErde merged 1 commit into
mainfrom
samerde-remove-gitguardian-workflow

Conversation

@SamErde

@SamErde SamErde commented Oct 1, 2026 •

Copy link
Copy Markdown
Owner

Pull Request

Type of Change

  • 📖 Documentation
  • 🪲 Fix
  • 🩹 Patch
  • ⚠️ Security Fix
  • 🚀 Feature
  • 💥 Breaking Change

Issue

Closes #20.

Description

Delete .github/workflows/GitGuardian.yml, which repeatedly failed with Error: Invalid GitGuardian API key. (runs 36794639551, 36767605822, 36768249935, 36769702357). No other repository references to GitGuardian were found. This removes only the GitGuardian Actions workflow; the separately installed GitGuardian GitHub App check (GitGuardian Security Checks) is unaffected.

Security coverage warning: Although the removal request stated that GitHub secret scanning and push protection were enabled, gh api repos/SamErde/PowerShell --jq '.security_and_analysis | {secret_scanning,secret_scanning_push_protection}' reported secret_scanning.status: disabled and secret_scanning_push_protection.status: disabled on 2026-10-01. This PR does not provide or verify equivalent replacement protection. The repository owner should review and enable those protections before relying on them; this PR does not change repository settings.

Required checks: gh api repos/SamErde/PowerShell/branches/main/protection returned HTTP 404 (Branch not protected), and gh api 'repos/SamErde/PowerShell/rulesets?includes_parents=true' returned []. No required GitGuardian workflow check was found; no protection settings were modified. If another required check exists outside these settings, the owner must remove it or merges may be blocked.

Admin cleanup: The now-unused GITGUARDIAN_API_KEY Actions secret may be deleted by a repository administrator after this workflow is removed. This PR does not delete any secrets.

Validation: actionlint .github\workflows\MegaLinter.yml .github\workflows\PSScriptAnalyzer.yml — passed; git diff --check — passed.

Checklist

  • 🕵️ I have reviewed my code for errors and tested it.
  • 🚩 My pull request does not contain multiple types of changes.
  • 📄 By submitting this pull request, I confirm that my contribution is made under the terms of the projects associated license.

Summary by CodeRabbit

  • Chores
    • Removed the automated GitGuardian scan workflow.

Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Oct 1, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-10-01T16:25:30.877721Z 719d87d Manual request
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@coderabbitai

coderabbitai Bot commented Oct 1, 2026 •

Copy link
Copy Markdown

Review in Change Stack →

Navigate logical layers of code changes, visualize relationships, and explore their blast radius.

No actionable comments were generated in the recent review. 🎉

ℹ️ Recent review info
⚙️ Run configuration

Configuration used: Organization UI

Review profile: ASSERTIVE

Plan: Advanced

Run ID: 3200197b-e2ef-44b2-97cc-3970a88bb4cd

📥 Commits

Reviewing files that changed from the base of the PR and between c93b4aa and 719d87d.

📒 Files selected for processing (1)
  • .github/workflows/GitGuardian.yml
💤 Files with no reviewable changes (1)
  • .github/workflows/GitGuardian.yml

Included review availability: This review used your included allowance. Your plan provides up to 2 included reviews per hour; 1 remain after this review.


📝 Walkthrough

Walkthrough

The pull request deletes the GitGuardian Actions workflow. It does not change the separate GitGuardian GitHub App check.

Changes

GitGuardian workflow removal

Layer / File(s) Summary
Remove the GitGuardian scan workflow
.github/workflows/GitGuardian.yml
The workflow for push and manual-dispatch scans was deleted, including its checkout settings, permissions, timeout, and scanner inputs.

Priority: ⬇️ Low

Estimated code review effort: 2 (Simple) | ~8 minutes

Change: Other · Severity of issue fixed: Low

Merge Risk: ⚪ Minimal · up to 719d8

This removes a CI workflow that was failing because of an invalid API key. It does not alter application behavior, and merge risk is minimal. Repository owners may still want to confirm secret scanning and push protection are enabled.

🚥 Pre-merge checks | ✅ 5
✅ Passed checks (5 passed)
Check name Status Explanation
Description Check ✅ Passed Check skipped - CodeRabbit’s high-level summary is enabled.
Title check ✅ Passed The title clearly and concisely describes the main change: removal of the failing GitGuardian Actions workflow.
Linked Issues check ✅ Passed The PR deletes .github/workflows/GitGuardian.yml, which satisfies Issue #20. The PR summary states that no other GitGuardian repository references were found and that the separate `GitGuardian Secur…
Out of Scope Changes check ✅ Passed The whole-PR summary shows one change: deletion of .github/workflows/GitGuardian.yml. This change directly implements Issue #20. The summary reports no repository security-setting changes, secret de…
Docstring Coverage ✅ Passed No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check. Docstring coverage is scoped to functions touched by this diff. Analyzed 0 functions across 0…
✨ Finishing Touches
🧪 Generate unit tests (beta)
  • Commit to this branch
  • Create a new PR
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Autopilot is currently an internal CodeRabbit preview.


Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@SamErde

SamErde commented Oct 1, 2026

Copy link
Copy Markdown
Owner Author

@codex review

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. Keep it up!

Reviewed commit: 719d87d8bd

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

@codacy-production

Copy link
Copy Markdown

Up to standards ✅

🟢 Issues 0 issues

Results:
0 new issues

View in Codacy

NEW Get contextual insights on your PRs based on Codacy's metrics, along with PR and Jira context, without leaving GitHub. Enable AI reviewer
TIP This summary will be updated as you push new changes.

@SamErde
SamErde merged commit ac882ff into main Oct 1, 2026
5 checks passed
@SamErde
SamErde deleted the samerde-remove-gitguardian-workflow branch October 1, 2026 16:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Remove unreliable GitGuardian Actions workflow

1 participant