ci: dispatch coverage-fanout on merged source PRs#459
Open
eric-wang-1990 wants to merge 3 commits into
Open
Conversation
…ce PRs Wires databricks-sql-nodejs into the multi-language coverage fan-out. When a PR merges to main and touched driver source (a file under lib/), dispatch a `coverage-fanout` repository_dispatch to databricks/databricks-driver-test. Its coverage-fanout-tracker.yml then opens a tracking issue and runs the language-agnostic fan-out (a spec authored from this PR's diff, conformed across every driver). - Adds `closed` to the pull_request trigger types; the new trigger-coverage-fanout job gates on pull_request.merged == true. - Source-path filter (lib/): docs/CI/test-only merges don't warrant a full fan-out. - Reuses the existing INTEGRATION_TEST App token (scoped to driver-test) + the same peter-evans/repository-dispatch pin adbc-drivers/databricks uses. - Tightens skip-integration-tests-pr's guard to exclude `closed` so it doesn't re-stamp a check on merged PRs. Co-authored-by: Isaac Signed-off-by: Eric Wang <e.wang@databricks.com>
eric-wang-1990
had a problem deploying
to
azure-prod
July 23, 2026 20:35 — with
GitHub Actions
Failure
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 20:35 — with
GitHub Actions
Inactive
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 20:35 — with
GitHub Actions
Inactive
eric-wang-1990
had a problem deploying
to
azure-prod
July 23, 2026 20:35 — with
GitHub Actions
Failure
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 21:55 — with
GitHub Actions
Inactive
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 21:55 — with
GitHub Actions
Inactive
…ermissions peco-review-bot findings on the coverage-fanout sender (apply to all driver repos — the job is identical everywhere): - F1 (Medium): the merged-PR guard didn't constrain the base branch, so a PR merged into a release/feature branch that touched source would also dispatch a full fan-out authoring a spec from a diff that never reached main. Add `github.event.pull_request.base.ref == 'main'` to match the stated intent. - F2 (Low): the job declared no permissions block, relying on the default GITHUB_TOKEN read scope for github.rest.pulls.listFiles; if org defaults tighten to none it 403s silently. Scope it explicitly: contents: read + pull-requests: read. Co-authored-by: Isaac Signed-off-by: Eric Wang <e.wang@databricks.com>
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 22:20 — with
GitHub Actions
Inactive
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 22:20 — with
GitHub Actions
Inactive
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 22:20 — with
GitHub Actions
Inactive
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 22:20 — with
GitHub Actions
Inactive
eric-wang-1990
enabled auto-merge
July 23, 2026 22:23
Further peco-review-bot findings on the coverage-fanout sender: - Narrow the minted App installation token with `permission-contents: write` (all coverage_fanout needs is repository_dispatch → contents:write), matching the defense-in-depth the other dispatch jobs in these repos already use — so a leaked token can only fire dispatches, not exercise the App's full scope. - Restore the version tag in two action-pin comments (`# pinned` → the exact `# vX.Y.Z` the SHA corresponds to, per repo convention) for auditability. Co-authored-by: Isaac Signed-off-by: Eric Wang <e.wang@databricks.com>
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 22:37 — with
GitHub Actions
Inactive
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 22:37 — with
GitHub Actions
Inactive
eric-wang-1990
temporarily deployed
to
azure-prod
July 23, 2026 22:37 — with
GitHub Actions
Inactive
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Wires databricks-sql-nodejs into the multi-language coverage fan-out in
databricks/databricks-driver-test. When a PR merges tomainand touched driver source (a file underlib/), dispatch acoverage-fanoutrepository_dispatchto driver-test; itscoverage-fanout-tracker.ymlopens a tracking issue and runs the language-agnostic fan-out — a spec authored from this PR's diff, conformed as tests across every driver (csharp/python/go/nodejs/rust/kernel/jdbc).Same sender
adbc-drivers/databricksalready runs; this is one of a set of sibling PRs bringing the remaining driver repos onto the flow.What it does
closedto thepull_requesttrigger types; the newtrigger-coverage-fanoutjob gates ongithub.event.pull_request.merged == true.lib/): docs/CI/test-only merges don't kick off a full 7-leg fan-out.INTEGRATION_TEST_APP_ID/_PRIVATE_KEYApp token (scoped to driver-test) + the samepeter-evans/repository-dispatchpin adbc uses.skip-integration-tests-pr's guard to excludeclosedso it doesn't re-stamp a check on merged PRs.Test Plan
closedevent.coverage-fanoutdispatch + a new tracking issue indatabricks/databricks-driver-test.This pull request and its description were written by Isaac.