From 27b07e4c57afd9af87811400d9e3822765d64dbf Mon Sep 17 00:00:00 2001 From: Steve Gontzes Date: Thu, 24 Sep 2026 23:52:38 +0000 Subject: [PATCH 1/3] Keep required review agents in the foreground Disable background tasks for the one-shot SDK review so the parent receives audit results before ending its turn. Preserve tools, permissions and fail-closed publication. Co-authored-by: c1-squire-dev[bot] --- .github/actions/pr-review/action.yml | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/.github/actions/pr-review/action.yml b/.github/actions/pr-review/action.yml index 749250f..d93457d 100644 --- a/.github/actions/pr-review/action.yml +++ b/.github/actions/pr-review/action.yml @@ -123,6 +123,11 @@ runs: - name: Run Claude PR Review id: claude_review uses: anthropics/claude-code-action@9ca9355b36297178e28d37c799d1c9c8a28e6507 # main: Claude Code 2.1.280 + env: + # This is a one-shot SDK turn: required audit agents must return before + # the parent finishes, rather than wait for a later background wakeup. + # Keep subagents available, but run their work in the foreground. + CLAUDE_CODE_DISABLE_BACKGROUND_TASKS: "1" with: anthropic_api_key: ${{ inputs.anthropic_api_key }} github_token: ${{ inputs.github_token }} From 8aaa1959d0d5594e65177e4ef239564d3707b428 Mon Sep 17 00:00:00 2001 From: Steve Gontzes Date: Fri, 25 Sep 2026 00:05:08 +0000 Subject: [PATCH 2/3] Document foreground audit completion in CI Co-authored-by: c1-squire-dev[bot] --- README.md | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/README.md b/README.md index 4f4dfcf..59738ae 100644 --- a/README.md +++ b/README.md @@ -28,6 +28,11 @@ Keep broadly shared connector criteria in the connector mixin. Use repo-local The review assesses the whole change, including intent, correctness, security, meaningful test coverage, and operational risk. Prior findings are rechecked against current code; resolving a thread does not remove an unfixed blocker from the verdict. + +Required audit subagents run in the foreground: this is a one-shot CI review, +so their results must return before the parent finishes. Background task +handoffs are disabled; the job cannot resume a later conversation turn. + The agent posts its verdict in a working summary comment and never writes review-state metadata. After a successful run, CI publishes the report as a NEW comment carrying a visible reviewed-commit link and CI-owned review-state From de1f60868b429bc43fbffff737afe55110433428 Mon Sep 17 00:00:00 2001 From: Steve Gontzes Date: Fri, 25 Sep 2026 12:18:28 +0000 Subject: [PATCH 3/3] Pin the official Claude Code action v1.0.234 release Use the release commit for Claude Code 2.1.282 and Agent SDK 0.3.282 while retaining foreground-only review audits. Co-authored-by: c1-squire-dev[bot] --- .github/actions/pr-review/action.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/actions/pr-review/action.yml b/.github/actions/pr-review/action.yml index d93457d..ee12b0a 100644 --- a/.github/actions/pr-review/action.yml +++ b/.github/actions/pr-review/action.yml @@ -122,7 +122,7 @@ runs: } >> "${GITHUB_ENV}" - name: Run Claude PR Review id: claude_review - uses: anthropics/claude-code-action@9ca9355b36297178e28d37c799d1c9c8a28e6507 # main: Claude Code 2.1.280 + uses: anthropics/claude-code-action@9171db3e57d6a3140a37ddc2ba92788584e0ead6 # v1.0.234: Claude Code 2.1.282 env: # This is a one-shot SDK turn: required audit agents must return before # the parent finishes, rather than wait for a later background wakeup.