From 60add6da495152d7e54ad29da93bca2e57af3695 Mon Sep 17 00:00:00 2001 From: Christine Chen <10511452+christineschen@users.noreply.github.com> Date: Tue, 23 Jun 2026 17:59:16 -0400 Subject: [PATCH] fix: use GitHub App token for auto-merge workflow Generate GitHub App token using GH_DOCS_SYNC_APP_ID and GH_DOCS_SYNC_APP_PRIVATE_KEY secrets. Use the app token instead of GITHUB_TOKEN for both close-superseded and auto-merge steps to ensure downstream workflow triggers (sdk_publish.yaml) after merge. This aligns token usage with typescript-sdk and go-sdk implementations. --- .github/workflows/auto-merge-speakeasy-pr.yaml | 11 +++++++++-- 1 file changed, 9 insertions(+), 2 deletions(-) diff --git a/.github/workflows/auto-merge-speakeasy-pr.yaml b/.github/workflows/auto-merge-speakeasy-pr.yaml index 9ba77ed..29e7603 100644 --- a/.github/workflows/auto-merge-speakeasy-pr.yaml +++ b/.github/workflows/auto-merge-speakeasy-pr.yaml @@ -31,9 +31,16 @@ jobs: ) runs-on: ubuntu-latest steps: + - name: Generate GitHub App token + id: app-token + uses: actions/create-github-app-token@v3 + with: + app-id: ${{ secrets.GH_DOCS_SYNC_APP_ID }} + private-key: ${{ secrets.GH_DOCS_SYNC_APP_PRIVATE_KEY }} + - name: Close superseded Speakeasy PRs env: - GH_TOKEN: ${{ secrets.GITHUB_TOKEN }} + GH_TOKEN: ${{ steps.app-token.outputs.token }} run: | set -euo pipefail CURRENT_PR="${{ github.event.pull_request.number }}" @@ -64,7 +71,7 @@ jobs: - name: Auto-merge Speakeasy PR env: - GH_TOKEN: ${{ secrets.GITHUB_TOKEN }} + GH_TOKEN: ${{ steps.app-token.outputs.token }} run: | set -euo pipefail PR_NUM="${{ github.event.pull_request.number }}"