From da8d99bb4646c6649632606fdada94b9d9540f97 Mon Sep 17 00:00:00 2001 From: Philip Taron Date: Fri, 2 Oct 2026 05:31:18 -0700 Subject: [PATCH] workflows/eval: allow fork PR checkout of ci/pinned.json actions/checkout v7 refuses to check out fork PR commits from pull_request_target workflows unless allow-unsafe-pr-checkout is set. The versions job checks out ci/pinned.json at the PR's merge commit, which matches pull_request.merge_commit_sha (or head.sha) in the event payload and would be rejected. Only ci/pinned.json is checked out, without persisted credentials, and it is read as data by trusted/ci/supportedVersions.nix, so opting in is safe. Assisted-by: Claude Code (claude-opus-5-5) (cherry picked from commit 9d1a3338ee5236dd844d1531ce2861fdeb660b0f) --- .github/workflows/eval.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/eval.yml b/.github/workflows/eval.yml index acad9f3467ac..16a758aba5f9 100644 --- a/.github/workflows/eval.yml +++ b/.github/workflows/eval.yml @@ -65,6 +65,9 @@ jobs: path: untrusted sparse-checkout: | ci/pinned.json + # ci/pinned.json is only read as data by trusted/ci/supportedVersions.nix, + # so checking out the fork PR's merge commit is safe here. + allow-unsafe-pr-checkout: true - name: Find commit that touched ci/pinned.json id: find-pinned-commit