Skip to content

[no-mistakes#542] fix(pipeline): escape bare HTML-like tags in PR intent text #1562

Description

@github-actions

Decision needed - no-mistakes#542

PR review by jbb-codes · ci-state-unknown

fix(pipeline): escape bare HTML-like tags in PR intent text

Situation

  • Compliance: unknown
  • Tests: unknown
  • Freshness: unknown - current target state could not be completely verified as of 2026-07-23T09:48:53Z; approval-needed, green, and last-known values are not current assertions.
  • Notes: Current CI state could not be completely verified as of 2026-07-23T09:48:53Z. Approval-needed, green, and prior-head values are not being presented as current. Exact observation was incomplete.

Auto-merge criteria

Note

Read-only preflight from the authoritative auto-merge evaluator. A displayed MET result never authorizes a merge: Wheelhouse re-evaluates every gate and performs G7 immediately before acting.

Scope

  • UNAVAILABLE Scope - merge-ready PR review - not evaluated on this card generation path

Safety

  • UNAVAILABLE Safety - complete healthy scan - not evaluated on this card generation path
  • UNAVAILABLE Safety - target PR is open - not evaluated on this card generation path
  • UNAVAILABLE Safety - no per-PR auto-merge opt-out - not evaluated on this card generation path
  • UNAVAILABLE Safety - head SHA unchanged - not evaluated on this card generation path

G0 (repo)

  • UNAVAILABLE G0 - repository auto-merge enabled - not evaluated on this card generation path
  • UNAVAILABLE G0 - default-branch VISION.md present - not evaluated on this card generation path

G1 (card)

  • UNAVAILABLE G1 - trusted unique decision card - not evaluated on this card generation path
  • UNAVAILABLE G1 - card published after triage - not evaluated on this card generation path
  • UNAVAILABLE G1 - exclusive card claim - not evaluated on this card generation path

G2 (files)

  • UNAVAILABLE G2 - complete immutable file list - not evaluated on this card generation path
  • UNAVAILABLE G2 - workflow and security exclusions clear - not evaluated on this card generation path

G3 (author)

  • UNAVAILABLE G3 - non-maintainer human contributor - not evaluated on this card generation path
  • UNAVAILABLE G3 - prior merged contribution in this repo - not evaluated on this card generation path

G4 (checks)

  • UNAVAILABLE G4 - configured checks green - not evaluated on this card generation path
  • UNAVAILABLE G4 - PR mergeable - not evaluated on this card generation path
  • UNAVAILABLE G4 - merge state clean - not evaluated on this card generation path

G5 (size)

  • UNAVAILABLE G5 - changed-file limit - not evaluated on this card generation path
  • UNAVAILABLE G5 - changed-line limit - not evaluated on this card generation path

G6 (triage + behavior)

  • UNAVAILABLE G6 - automatic triage available - not evaluated on this card generation path
  • UNAVAILABLE G6 - successful triage for current head - not evaluated on this card generation path
  • UNAVAILABLE G6 - top-level recommendation is merge - not evaluated on this card generation path
  • UNAVAILABLE G6 - eligible behavior class - not evaluated on this card generation path
  • UNAVAILABLE G6 - existing/default behavior unchanged - not evaluated on this card generation path
  • UNAVAILABLE G6 - class C is opt-in and default-off - not evaluated on this card generation path
  • VISION.md-dependent checks
    • UNAVAILABLE G6 - behavior aligns with VISION.md - not evaluated on this card generation path
    • UNAVAILABLE G6 - behavior verdict recommends merge - not evaluated on this card generation path
    • UNAVAILABLE G6 - verdict uses current VISION.md revision - not evaluated on this card generation path
    • UNAVAILABLE G6 - verdict uses current base revision - not evaluated on this card generation path

G7 (final gate)

  • UNAVAILABLE G7 - immediate live recheck and manual merge gate - not evaluated on this card generation path

Triage

  • Summary: Fixes a rendering bug where user-supplied --intent text containing bare HTML-like tags (e.g. , ) was spliced verbatim into the PR body's ## Intent section, causing GitHub's markdown renderer to interpret them as unclosed HTML and collapse subsequent headings. Product implications: Routine internal fix to the pipeline's own PR-body assembly; no new configuration surface or user-facing behavior change beyond correcting broken markdown rendering in generated PR bodies — no owner discussion needed. Your decision Tick one box for a quick call, or reply with a slash-command (/merge, /close, /decline <reason>, /hold, /comment <text>, /request-changes <text>): [ ] Merge it [ ] Close / decline [ ] Investigate - deep code-grounded review (leaves this card open) [ ] Hold - I'll handle this manually Only the repository owner can drive this decision - everyone else's edits and comments are ignored.

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions