Description
docs/src/content/docs/reference/permissions.md's "Key read permission scopes" list and GitHub App-only section omit attestations, models, and secret-scanning-alerts, even though these are all supported in the schema ($defs.github_actions_permissions) and parser (pkg/workflow/permissions.go:62,78,101). Only copilot-requests is currently documented among the newer scopes.
Expected Impact
Users consulting the docs won't miss or wrongly assume these scopes are unavailable — improves documentation accuracy/completeness for a reference page.
Suggested Agent
Docs-focused agent (e.g. general-purpose) — audit permissions.md against permissions.go and add the missing scope entries.
Estimated Effort
Quick (< 1 hour)
Data Source
DeepReport analysis of Schema Consistency Checker report (discussion #54737, 2026-08-22), finding #2.
Generated by 🔬 Deep Report · agent · 109.8 AIC · ⌖ 8.86 AIC · ⊞ 12.4K · ◷
Description
docs/src/content/docs/reference/permissions.md's "Key read permission scopes" list and GitHub App-only section omitattestations,models, andsecret-scanning-alerts, even though these are all supported in the schema ($defs.github_actions_permissions) and parser (pkg/workflow/permissions.go:62,78,101). Onlycopilot-requestsis currently documented among the newer scopes.Expected Impact
Users consulting the docs won't miss or wrongly assume these scopes are unavailable — improves documentation accuracy/completeness for a reference page.
Suggested Agent
Docs-focused agent (e.g. general-purpose) — audit permissions.md against permissions.go and add the missing scope entries.
Estimated Effort
Quick (< 1 hour)
Data Source
DeepReport analysis of Schema Consistency Checker report (discussion #54737, 2026-08-22), finding #2.