From 74b5b1d5941d3b75dcead502cca1fec11d3660bb Mon Sep 17 00:00:00 2001 From: Yuriy Kirillov Date: Wed, 12 Aug 2026 04:28:10 +0200 Subject: [PATCH] ci: bootstrap trusted pull request validation --- .github/workflows/commit.yml | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/.github/workflows/commit.yml b/.github/workflows/commit.yml index 301235e..fa5bf75 100644 --- a/.github/workflows/commit.yml +++ b/.github/workflows/commit.yml @@ -1,9 +1,11 @@ name: Commit on: - # Baseline uses pull_request so changes to the shared workflow validate themselves. - # Consumers should use pull_request_target to load trusted workflow code from main. + # Remove pull_request after pull_request_target reaches main. It temporarily + # lets this bootstrap change validate itself from the pull request branch. pull_request: types: [opened, reopened, edited, synchronize] + pull_request_target: + types: [opened, reopened, edited, synchronize] jobs: pull-request-title: uses: ./.github/workflows/commit-shared.yml