ci: page Slack when a release-critical workflow fails - #35
Merged
Conversation
Contributor
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Adds
.github/workflows/pipeline-alert.yml: a Slack page when a release-critical workflow fails in this repo.Why: the publish pipeline here was silently broken for two and a half months and nobody found out until someone went looking. Now that the sync and release pipelines are deterministic, the remaining failure mode is a pipeline that stops with a "needs human" hard failure and nobody notices, which is exactly what this closes.
Design notes:
workflows:list), oncompleted, and fires only when the conclusion isfailure.workflow_dispatchsends a test ping so the wiring can be proven without breaking anything.SLACK_WEBHOOK_URLis not set, the job FAILS loudly rather than skipping quietly. An alerting job that silently does nothing is worse than no alerting.env:and the payload is built withjq --arg, so no workflow-context value is ever spliced into a shell or JSON string directly.Setup needed once per repo, after merge: create a Slack incoming webhook, then
gh secret set SLACK_WEBHOOK_URL --repo blindpaylabs/<repo>, then run the workflow manually to get the confirmation ping.https://claude.ai/code/session_01F1stiNzuNtJXoXtiW9ZCbs