Repository navigation
fix: clear-text logging of sensitive information (CodeQL #5157) - #2163
Open
RB (nitrocode) with Copilot wants to merge 68 commits into
Open
RB (nitrocode) with Copilot wants to merge 68 commits into
RB (nitrocode) with Copilot wants to merge 68 commits into
Mergify / Summary
succeeded
Jul 11, 2026 in 17s
4 rules match and 7 potential rules
Rule: Comment when size/xxl label is added (comment)
-
label=size/xxl
✅ Rule: Remove stacked label when PR targets main (label)
- all of:
- all of:
-
-closed -
-merged
-
- all of:
- all of:
- any of:
-
base=main -
base=master
-
- any of:
✅ Rule: ask to resolve conflict (comment, label)
-
conflict - all of:
- all of:
-
-closed -
-merged
-
- all of:
✅ Rule: remove triage label if approved (label)
-
#approved-reviews-by>=1 - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: remove certain labels on close (label)
-
closed
Rule: add triage label for new pull requests (label)
-
#approved-reviews-by=0 -
#label=0 - any of:
-
commits[*].date_committer > 5 minutes ago -
created-at > 5 minutes ago -
updated-at > 7 days ago
-
- all of:
- all of:
-
-closed -
-merged
-
- all of:
- all of:
- all of:
-
-author=cloudpossebot -
-author=dependabot[bot] -
-author=github-actions[bot] -
-author=renovate[bot]
-
- all of:
Rule: add "WIP" label when the title contains "WIP" (label)
-
title~=WIP - all of:
- all of:
-
-closed -
-merged
-
- all of:
✅ Rule: add "needs-cloudposse" label when restrictions apply to this PR (comment, label)
- all of:
- all of:
-
-closed -
-merged
-
- all of:
- all of:
- any of:
-
files~=(mergify|settings|dependabot|renovate|CODEOWNERS|\.github|Makefile|Dockerfile) -
label~=(cloudposse)
-
- any of:
Rule: rebase pull requests one time when labeled with rebase (rebase)
-
-conflict[📌 rebase requirement] -
label=rebase -
-closed[📌 rebase requirement] -
queue-position = -1[📌 rebase requirement] - any of:
-
#commits-behind > 0[📌 rebase requirement] -
-linear-history[📌 rebase requirement]
-
Rule: rebase pull requests one time when labeled with rebase (label)
-
label=rebase
Rule: Comment on PRs during code freeze and close them (close)
- all of:
-
repository-full-name=cloudposse/terraform-aws-components -
base=main -
created-at > 2024-11-12 -
label != force
-
💖 Mergify is proud to provide this service for free to open source projects.
🚀 You can help us by becoming a sponsor!
21 not applicable rules
Rule: Trigger workflow dispatch on PR synchronized by github-actions[bot] (comment, github_actions)
- all of:
- any of:
-
author=github-actions[bot]
-
- any of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
- all of:
- any of:
-
base=main -
base=master
-
- any of:
Rule: label automated pull requests (label)
- all of:
- any of:
-
author=cloudpossebot -
author=dependabot[bot] -
author=github-actions[bot] -
author=renovate[bot]
-
- any of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: label automated pull requests that update readme (label)
-
files=README.md - all of:
- any of:
-
author=cloudpossebot -
author=dependabot[bot] -
author=github-actions[bot] -
author=renovate[bot]
-
- any of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: run terratest on automated pull requests that update terraform files (comment)
- all of:
- any of:
-
author=cloudpossebot -
author=dependabot[bot] -
author=github-actions[bot] -
author=renovate[bot]
-
- any of:
- all of:
- all of:
-
files~=\.tf$
-
- all of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: merge automated PRs that only update the markdown files, images or videos (merge)
-
#commits-behind = 0[🛡 GitHub branch protection] -
-conflict[📌 merge requirement] -
github-require-last-push-approval[🛡 GitHub branch protection] -
github-review-approved[🛡 GitHub branch protection] -
github-review-decision = APPROVED[🛡 GitHub branch protection] -
head~=auto-update/.* - all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- any of:
-
author=cloudpossebot -
author=dependabot[bot] -
author=github-actions[bot] -
author=renovate[bot]
-
- any of:
-
#check-pending=0 -
#review-threads-unresolved = 0[🛡 GitHub branch protection] -
-closed[📌 merge requirement] -
-draft[📌 merge requirement] -
files~=\.(md|gif|png|jpg|mp4)$ - all of:
- all of:
-
-closed -
-merged
-
- all of:
- any of: [📌 merge -> configuration change requirements]
-
-mergify-configuration-changed -
check-success = Configuration changed
-
- any of: [🛡 GitHub branch protection]
-
check-success = validate-codeowners -
check-neutral = validate-codeowners -
check-skipped = validate-codeowners
-
- any of: [🛡 GitHub branch protection]
-
check-success = [k3s] demo-helmfile -
check-neutral = [k3s] demo-helmfile -
check-skipped = [k3s] demo-helmfile
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-linux] examples/demo-component-versions -
check-neutral = [mock-linux] examples/demo-component-versions -
check-skipped = [mock-linux] examples/demo-component-versions
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-linux] examples/demo-context -
check-neutral = [mock-linux] examples/demo-context -
check-skipped = [mock-linux] examples/demo-context
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-linux] examples/demo-atlantis -
check-neutral = [mock-linux] examples/demo-atlantis -
check-skipped = [mock-linux] examples/demo-atlantis
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-linux] examples/demo-vendoring -
check-neutral = [mock-linux] examples/demo-vendoring -
check-skipped = [mock-linux] examples/demo-vendoring
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-macos] examples/demo-component-versions -
check-neutral = [mock-macos] examples/demo-component-versions -
check-skipped = [mock-macos] examples/demo-component-versions
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-macos] examples/demo-context -
check-neutral = [mock-macos] examples/demo-context -
check-skipped = [mock-macos] examples/demo-context
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-macos] examples/demo-atlantis -
check-neutral = [mock-macos] examples/demo-atlantis -
check-skipped = [mock-macos] examples/demo-atlantis
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-macos] examples/demo-vendoring -
check-neutral = [mock-macos] examples/demo-vendoring -
check-skipped = [mock-macos] examples/demo-vendoring
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-windows] examples/demo-vendoring -
check-neutral = [mock-windows] examples/demo-vendoring -
check-skipped = [mock-windows] examples/demo-vendoring
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-windows] examples/demo-atlantis -
check-neutral = [mock-windows] examples/demo-atlantis -
check-skipped = [mock-windows] examples/demo-atlantis
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-windows] examples/demo-component-versions -
check-neutral = [mock-windows] examples/demo-component-versions -
check-skipped = [mock-windows] examples/demo-component-versions
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-windows] examples/demo-context -
check-neutral = [mock-windows] examples/demo-context -
check-skipped = [mock-windows] examples/demo-context
-
- any of: [🛡 GitHub branch protection]
-
check-success = [mock-windows] tests/fixtures/scenarios/complete -
check-neutral = [mock-windows] tests/fixtures/scenarios/complete -
check-skipped = [mock-windows] tests/fixtures/scenarios/complete
-
- any of: [🛡 GitHub branch protection]
-
check-success = Lint (golangci) -
check-neutral = Lint (golangci) -
check-skipped = Lint (golangci)
-
- any of: [🛡 GitHub branch protection]
-
check-success = CodeQL -
check-neutral = CodeQL -
check-skipped = CodeQL
-
- any of: [🛡 GitHub branch protection]
-
check-success = PR Semver Labels -
check-neutral = PR Semver Labels -
check-skipped = PR Semver Labels
-
- any of: [🛡 GitHub branch protection]
-
check-success = Acceptance Tests (linux) -
check-neutral = Acceptance Tests (linux) -
check-skipped = Acceptance Tests (linux)
-
- any of: [🛡 GitHub branch protection]
-
check-success = Acceptance Tests (macos) -
check-neutral = Acceptance Tests (macos) -
check-skipped = Acceptance Tests (macos)
-
- any of: [🛡 GitHub branch protection]
-
check-success = Acceptance Tests (windows) -
check-neutral = Acceptance Tests (windows) -
check-skipped = Acceptance Tests (windows)
-
- any of: [🛡 GitHub branch protection]
-
check-success = Build (macos) -
check-neutral = Build (macos) -
check-skipped = Build (macos)
-
- any of: [🛡 GitHub branch protection]
-
check-success = Build (linux) -
check-neutral = Build (linux) -
check-skipped = Build (linux)
-
- any of: [🛡 GitHub branch protection]
-
check-success = Build (windows) -
check-neutral = Build (windows) -
check-skipped = Build (windows)
-
- any of: [🛡 GitHub repository ruleset rule
Require autofix.ci]-
check-success = @github-actions/autofix -
check-neutral = @github-actions/autofix -
check-skipped = @github-actions/autofix
-
Rule: merge automated PRs that only update the markdown files, images or videos (label)
-
head~=auto-update/.* - all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- any of:
-
author=cloudpossebot -
author=dependabot[bot] -
author=github-actions[bot] -
author=renovate[bot]
-
- any of:
-
#check-pending=0 -
files~=\.(md|gif|png|jpg|mp4)$ - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: close automated PRs with persistent merge conflicts quickly (close)
- all of:
- any of:
-
author=cloudpossebot -
author=dependabot[bot] -
author=github-actions[bot] -
author=renovate[bot]
-
- any of:
-
commits[*].date_committer < 1 days ago -
conflict - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: close Pull Requests without files changed (close, label)
- all of:
- all of:
-
#files=0
-
- all of:
- not:
- any of:
-
author=Copilot -
author~=(?i).*copilot.* -
author=github-copilot[bot] -
body~=(?i)Co-authored-by:.*copilot
-
- any of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: Label PRs that are not targeting main as stacked (label)
- all of:
-
base!=main
-
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: ask for title (comment)
-
-title~=^[0-9A-Za-z]+ - all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: ask for description (comment)
-
body~=(Describe high-level what changed) - all of:
- all of:
-
base=master -
base=main
-
- all of:
-
-body~=[0-9A-Za-z]{3,}\\s+[0-9A-Za-z]{3,}\\s+[0-9A-Za-z]{3,} - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: remove outdated reviews (dismiss_reviews)
- all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: close stale pull request after 90 days (close)
-
label~=(stale) - all of:
- all of:
-
base=master -
base=main
-
- all of:
-
commits[*].date_committer < 90 days ago -
updated-at < 3 days ago - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: label stale pull request after 30 days (comment, label)
- all of:
- all of:
-
base=master -
base=main
-
- all of:
-
-label~=(stale|triage) -
commits[*].date_committer < 30 days ago -
updated-at < 7 days ago - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: close pull request waiting on feedback for 1 month (close)
-
label~=(stale) - all of:
- all of:
-
base=master -
base=main
-
- all of:
-
updated-at < 30 days ago - all of:
- all of:
-
-closed -
-merged
-
- all of:
- any of:
-
#commented-reviews-by > 0 -
#changes-requested-reviews-by > 0 -
label~=(feedback)
-
Rule: close pull request marked as invalid, duplicate or won't fix (close)
-
label~=(duplicate|invalid|wontfix) - all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: close pull request that is a work in progress and in active for 1 month (close)
- all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- any of:
-
draft -
label~=(WIP|wip) -
title~=^(wip|WIP) - all of:
- any of:
-
label~=(do-not-merge|do not merge) -
title~=(do-not-merge|do not merge)
-
- any of:
- all of:
- all of:
-
label~=(triage|stale|feedback|help needed)
-
- all of:
-
- any of:
-
commits[*].date_committer < 90 days ago -
updated-at < 30 days ago - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: welcome new contributors (comment)
- all of:
- all of:
-
-conflict -
-label~=(conflict)
-
- all of:
- all of:
- all of:
-
base=master -
base=main
-
- all of:
-
updated-at < 5 minutes ago - all of:
- all of:
-
-closed -
-merged
-
- all of:
- all of:
- all of:
-
-draft -
-label~=(WIP|wip|do-not-merge|do not merge|triage|stale|feedback|help needed) -
-title~=^(wip|WIP)
-
- all of:
- all of:
- all of:
-
-author=cloudpossebot -
-author=dependabot[bot] -
-author=github-actions[bot] -
-author=renovate[bot]
-
- all of:
- all of:
- all of:
-
-author=@admins -
-author=@approvers -
-author=@bots -
-author=@contributors -
-author=@engineering -
-author=@security - all of:
- all of:
-
-author=cloudpossebot -
-author=dependabot[bot] -
-author=github-actions[bot] -
-author=renovate[bot]
-
- all of:
-
- all of:
Rule: Add needs-test label on new commits (label)
- all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- all of:
-
files~=\.tf$
-
- all of:
- all of:
- all of:
-
commits[*].date_committer > 1 minutes ago
-
- all of:
-
-label=~needs-test - all of:
- all of:
-
-closed -
-merged
-
- all of:
Rule: Remove needs-test label when required tests pass (label)
- all of:
- all of:
-
base=master -
base=main
-
- all of:
- all of:
- all of:
-
-closed -
-merged
-
- all of:
- all of:
- any of:
-
-files~=\.tf$ - all of:
-
check-success=test/bats -
check-success=test/terratest -
-status-failure~=^(terratest|terraform)$
-
-
- any of:
Rule: rebase pull request when it's more than 10 commits behind main (rebase)
-
-conflict[📌 rebase requirement] - all of:
- all of:
-
base=master -
base=main
-
- all of:
-
#commits-behind>=10 -
-closed[📌 rebase requirement] -
queue-position = -1[📌 rebase requirement] - all of:
- all of:
-
-closed -
-merged
-
- all of:
- any of:
-
#commits-behind > 0[📌 rebase requirement] -
-linear-history[📌 rebase requirement]
-
Mergify commands and options
More conditions and actions can be found in the documentation.
You can also trigger Mergify actions by commenting on this pull request:
@Mergifyio refreshwill re-evaluate the rules@Mergifyio rebasewill rebase this PR on its base branch@Mergifyio updatewill merge the base branch into this PR@Mergifyio backport <destination>will backport this PR on<destination>branch
Additionally, on Mergify dashboard you can:
- look at your merge queues
- generate the Mergify configuration with the config editor.
Finally, you can contact us on https://mergify.com
Loading