Skip to content

Commit 5649dfd

Browse files
committed
ci: reject AI attribution and vendor-locked agent config
Calls the org-wide reusable workflow in imqueue/.github. It fails a push or pull request whose commits carry an AI co-author trailer (`Co-Authored-By: Claude ...`, `Claude-Session:`, `Co-authored-by: Copilot ...`), or that commit a vendor-locked agent config file such as CLAUDE.md. AGENTS.md remains the one supported agent file. Trailer shapes only, never prose, and only unambiguous vendor tokens — so `Co-authored-by: dependabot[bot]` and commit messages that discuss Claude, Anthropic or AI crawlers keep passing.
1 parent 71127c0 commit 5649dfd

1 file changed

Lines changed: 22 additions & 0 deletions

File tree

Lines changed: 22 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,22 @@
1+
# Fails this push or PR if a commit carries AI attribution, or if a
2+
# vendor-locked agent config file (CLAUDE.md and friends) is committed.
3+
#
4+
# The rules live in imqueue/.github/.github/workflows/no-ai-attribution.yml.
5+
# They exist because GitHub renders a `Co-Authored-By: Claude ...` trailer as a
6+
# second author on the commit page — 148 such commits were rewritten out of this
7+
# org's history, and this check is what stops them coming back.
8+
#
9+
# The half that actually blocks is local: a commit-msg and pre-push hook running
10+
# the same rules. This is the backstop for --no-verify, a machine without the
11+
# hooks, and the GitHub web editor.
12+
13+
name: No AI attribution
14+
15+
on:
16+
pull_request:
17+
types: [opened, reopened, synchronize]
18+
push:
19+
20+
jobs:
21+
attribution:
22+
uses: imqueue/.github/.github/workflows/no-ai-attribution.yml@master

0 commit comments

Comments
 (0)