Skip to content

[deep-report] Document attestations/models/secret-scanning-alerts permission scopes in permissions.md #54753

Description

@github-actions

Description

docs/src/content/docs/reference/permissions.md's "Key read permission scopes" list and GitHub App-only section omit attestations, models, and secret-scanning-alerts, even though these are all supported in the schema ($defs.github_actions_permissions) and parser (pkg/workflow/permissions.go:62,78,101). Only copilot-requests is currently documented among the newer scopes.

Expected Impact

Users consulting the docs won't miss or wrongly assume these scopes are unavailable — improves documentation accuracy/completeness for a reference page.

Suggested Agent

Docs-focused agent (e.g. general-purpose) — audit permissions.md against permissions.go and add the missing scope entries.

Estimated Effort

Quick (< 1 hour)

Data Source

DeepReport analysis of Schema Consistency Checker report (discussion #54737, 2026-08-22), finding #2.

Generated by 🔬 Deep Report · agent · 109.8 AIC · ⌖ 8.86 AIC · ⊞ 12.4K ·

  • expires on Aug 23, 2026, 10:29 PM UTC-08:00

Metadata

Metadata

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions