Skip to content

Scheduled sample test failures cannot create GitHub issues #2662

Description

@willdavsmith

Bug information

Steps to reproduce (required)

Run the scheduled .github/workflows/test.yaml workflow with a sample failure. Its Create GitHub issue on failure step runs gh issue create using GH_TOKEN: ${{ github.token }}.

Representative failure: https://github.com/radius-project/samples/actions/runs/34119803387 on v0.60.

Observed behavior (required)

The reporting step fails with:

GraphQL: Resource not accessible by integration (createIssue)

The workflow declares permissions: {} globally and the test job grants only contents: read; the reporting step attempts to create an issue without a declared issues: write permission. Investigate effective token permissions and repository policy to confirm the complete cause.

Desired behavior (required)

Scheduled sample-test failures automatically create a GitHub issue with the expected sample-specific title, workflow-run link, and test-failure label.

Provide narrowly scoped issue-write access to scheduled failure reporting without unnecessarily broadening privileges for pull-request test jobs. Verify the reporting path with a controlled failure and assess which maintained branches share the defect.

Workaround (optional)

Inspect failed workflow runs and file failures manually.

System information

rad Version (required)

Radius v0.60.2 was reported in the September 7 volumes job. This failure concerns the workflow's GitHub token permissions rather than Radius initialization.

Operating system (required)

GitHub Actions ubuntu-24.04 runner.

Additional context

Follow-up to #2661, which addresses the separate v0.60 default-environment initialization failure. Keep the permission fix independent so deployment recovery is not blocked by reporting changes. The PR release-version selection correction is included in the #2661 implementation plan and does not need a separate issue.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething is broken or not working as expectedtriagedThis item has been triaged by project maintainers and is in the backlog

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions