fabro/docs/public/execution
Scott Werner 5c6195a352 Check GitHub targets out in the sandbox and publish their run branch
Since the Petri cutover, a run with a GitHub target started in an empty
workspace, nothing pushed its run branch to GitHub, and nothing asked for
the automatic pull request when it succeeded.

Fabro's hooks now check a fresh run's GitHub target out inside the
sandbox when Petri hands them the scope, before the first stage: the
workspace fetches the selected commit, tag or branch at the run's clone
depth, with a read-only token the server resolves at each worker launch.
The worker scrubs the token from its environment at startup and presents
it only to the fetch, so it never lands in the repository or its remote.
The files belong to the sandbox user, so git accepts them.

The same checkout seeds the workspace's snapshot repository with the
starting commit. Checkpoint bundles from a shallow clone then import, a
stage's own commits never make a bundle carry the source's history, a
restore into a fresh sandbox fetches the base again and applies the run's
commits, and a fork carries the base with its checkpoints.

When a successful GitHub-target run ends, the server pushes its final
commit from the snapshot repository to fabro/run/<id> with its own write
credentials, then, when the run changed files and asks for one, records
the pull request request for the existing creation supervisor. A failed
push or request is a warning notice on the run. The manual pull request
endpoint shares the request step.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
2026-10-01 13:00:26 -04:00
..
automations.mdx Align remote workflow selectors with run targets 2026-08-31 17:13:20 -04:00
checkpoints.mdx Check GitHub targets out in the sandbox and publish their run branch 2026-10-01 13:00:26 -04:00
child-runs.mdx Simplify run creation to registered workflow versions 2026-09-12 11:04:15 -06:00
context.mdx fix(sandbox): materialize prompt blobs in runtime storage, not the checkout 2026-08-25 07:14:31 -04:00
environments.mdx Open sandbox provider identity to plugin kinds 2026-09-09 15:17:32 -06:00
failures.mdx Add on_failure="succeed" as an explicit failure policy 2026-08-26 07:34:24 -04:00
observability.mdx docs: refresh product documentation 2026-08-24 09:53:09 -04:00
outcomes.mdx Add on_failure="succeed" as an explicit failure policy 2026-08-26 07:34:24 -04:00
run-configuration.mdx Merge remote-tracking branch 'origin/main' into remove/run-metadata-branches 2026-09-12 16:28:01 -06:00