Skip to content

build(ci): let the build checks report on every pull request - #83

Merged
bgard68 merged 2 commits into
mainfrom
build/requireable-checks
Aug 2, 2026
Merged

build(ci): let the build checks report on every pull request#83
bgard68 merged 2 commits into
mainfrom
build/requireable-checks

Conversation

@bgard68

@bgard68 bgard68 commented Aug 2, 2026

Copy link
Copy Markdown
Owner

Prerequisite for requiring the checks that matter — and the direct fix for today's only breakage.

The problem

A path-filtered check never reports on a pull request that misses its paths. A required check that never reports blocks the merge for ever. So Build & Test and Build API image & scan could not be added to the required list.

That is how auto-merge landed #76 and #79 while Build API image & scan was failing, leaving dapper unable to build its image until #82 regenerated the lock files. Auto-merge waited for required checks; there were none to wait for.

The change

paths: removed from pull_request only. The push trigger keeps its filter — there is no reason to rebuild and redeploy on a docs edit, and nothing gates on a push.

on:
  push:
    branches: [ main ]
    paths: [ 'src/**', … ]     # unchanged
  pull_request:
    branches: [ main ]          # no paths — always reports

The cost

A build on every pull request, roughly a minute. The alternative is a required-checks list that omits the checks that actually matter — which is the shape of protection this review has spent the day taking apart.

Once this lands: add the required status checks, then re-enable auto-merge.

bgard68 added 2 commits August 2, 2026 11:18
A path-filtered check never reports on a pull request that misses its paths,
and a required check that never reports blocks the merge for ever. So 'Build &
Test' and 'Build API image & scan' could not be required — which is how
auto-merge landed two dependency bumps today while the container build was
failing, and left dapper unable to build its image.

The filter is removed from pull_request only. The push trigger keeps it:
there is no reason to rebuild and redeploy on a docs edit, and nothing gates
on a push.

The cost is a build on every pull request, roughly a minute. The alternative
is a required-checks list that omits the checks that matter, which is the
shape of protection this review has spent the day removing.
main's container build has been failing since #75 merged. Dependabot updated
TodoApp.Infrastructure's lock to System.IdentityModel.Tokens.Jwt 8.22.0 and
left WebApi, UnitTests and IntegrationTests on 8.19.2, so restore refuses in
locked mode with NU1004.

Nothing caught it, because 'Build API image & scan' was path-filtered and no
pull request since then touched src/. Removing that filter in this same branch
is what surfaced it — on the first run, which is the argument for the change.
@bgard68
bgard68 merged commit 5130e4d into main Aug 2, 2026
3 checks passed
@bgard68
bgard68 deleted the build/requireable-checks branch August 2, 2026 16:24
bgard68 added a commit that referenced this pull request Aug 2, 2026
Mirrors #83 on main, for the branch that would carry the API if it is ever
switched in.

A path-filtered check never reports on a pull request that misses its paths,
and a required check that never reports blocks the merge for ever — so
'Build & Test' and 'Build API image & scan' could not be required here. That
is how auto-merge landed two dependency bumps while the container build was
failing, and left this branch unable to build its image until #82.

Removed from pull_request only; the push trigger keeps its filter.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant