Skip to content

Authorize Global ETF review and check authentication before research - #239

Merged
Pigbibi merged 1 commit into
mainfrom
fix/global-etf-workflow-auth
Sep 16, 2026
Merged

Pigbibi merged 1 commit into
mainfrom
fix/global-etf-workflow-auth

Conversation

@Pigbibi

@Pigbibi Pigbibi commented Sep 16, 2026

Copy link
Copy Markdown
Contributor

Global ETF candidate review was rejected before model execution because its main-branch workflow was missing from the deployed OIDC allowlist. Add only that exact workflow to both deployment sources, and verify authenticated read-only health before starting research.

Preserve the failed run 35124525442 state unchanged; the explicitly approved recovery uses a separate fixed VPS directory with the same candidate and research boundaries.

Validation: focused pytest 22 passed, 1 skipped, 11 subtests; negative OIDC cases cover other workflows and non-main refs; failed preflight never calls research. Bash syntax, actionlint, Ruff and diff checks passed. No new trading authority.

…cation

Co-Authored-By: Codex <noreply@openai.com>
@Pigbibi
Pigbibi merged commit f8ebe83 into main Sep 16, 2026
4 checks passed
@Pigbibi
Pigbibi deleted the fix/global-etf-workflow-auth branch September 16, 2026 18:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant