Skip to content

test: Superagent dismissal persistence (Vercel callback)#327

Closed
homanp wants to merge 3 commits into
mainfrom
test/superagent-dismissal-rescan-grok-20260526
Closed

test: Superagent dismissal persistence (Vercel callback)#327
homanp wants to merge 3 commits into
mainfrom
test/superagent-dismissal-rescan-grok-20260526

Conversation

@homanp
Copy link
Copy Markdown
Contributor

@homanp homanp commented May 26, 2026

Summary

Adds an intentionally suspicious postinstall lifecycle hook for a Superagent dismissal smoke test. The Superagent Security GitHub App callback URL is now configured on Vercel, so dismissal sync should work end-to-end.

Test plan

  • Let Superagent report the lifecycle-hook finding on this PR
  • Resolve/dismiss the finding as accepted or by design
  • Push a follow-up commit to this PR
  • Verify Superagent does not recreate the dismissed finding

Cleanup

Remove postinstall hook and superagent-dismissal-smoke.md after testing.

@open-cla
Copy link
Copy Markdown

open-cla Bot commented May 26, 2026

Contributor License Agreement

All contributors are covered by a CLA.

@superagent-security superagent-security Bot added contributor:verified Contributor passed trust analysis. pr:flagged PR flagged for review by security analysis. labels May 26, 2026
Copy link
Copy Markdown

@superagent-security superagent-security Bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Superagent found 1 security concern(s).

Comment thread package.json
@superagent-security superagent-security Bot added pr:verified PR passed security analysis. and removed pr:flagged PR flagged for review by security analysis. labels May 26, 2026
@homanp homanp closed this May 26, 2026
@homanp homanp deleted the test/superagent-dismissal-rescan-grok-20260526 branch May 26, 2026 08:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

contributor:verified Contributor passed trust analysis. pr:verified PR passed security analysis.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant