Skip to content

[deep-report] Fix firewall/MCP observability artifact retention — 92.9% of sampled runs missing access.log/gateway.jsonl #51111

Description

@github-actions

Description

The Observability Coverage Report (discussion #50953, 2026-08-07) sampled 14 recent workflow runs with AWF firewall and MCP runtime evidence active. Only 1 of 14 (7.1%) retained access.log (firewall egress audit log), and only 1 of 14 (7.1%) retained MCP JSONL telemetry (gateway.jsonl or rpc-messages.jsonl) — despite runtime logs confirming the firewall/MCP gateway topology was active in all 14 runs. Affected workflows include PR Code Quality Reviewer, Design Decision Gate, Impeccable Skills Reviewer, Issue Monster, Duplicate Code Detector, and more.

Expected Impact

Without these artifacts, egress behavior cannot be audited and tool-call traces cannot be reconstructed after a run — a critical blind spot for security review and debugging. Fix the artifact upload/retention step (likely a missing actions/upload-artifact step or a path/condition mismatch) so these logs are consistently saved across firewall- and MCP-enabled workflows.

Suggested Agent

New Agent, or the observability-coverage workflow maintainer

Estimated Effort

Medium (1-4 hours)

Data Source

DeepReport analysis 2026-08-07, discussion #50953 (Observability Coverage Report).

Generated by 🔬 Deep Report · agent · 156.7 AIC · ⌖ 37.4 AIC · ⊞ 11.5K · ◷

  • expires on Aug 9, 2026, 7:05 AM UTC-08:00

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions