davsclaus commented on code in PR #27513:
URL: https://github.com/apache/camel/pull/27513#discussion_r4215263397


##########
.github/workflows/dep-check.yml:
##########
@@ -15,30 +15,16 @@
 # limitations under the License.
 #
 
+# Temporarily disabled: the job was failing (pilot-plugin 0.4.0 crashing on
+# bom-generator-maven-plugin which has test-scoped deps but no src/test/java)
+# while still showing green due to continue-on-error: true, wasting ~20 min
+# per PR with no actionable output.
+# To be replaced by a step in the main pr-build-main.yml workflow.
+
 name: 'Dependency Analysis'
 
 on:
-  pull_request:
-    branches:
-      - main
-    paths-ignore:
-      - .claude-plugin/**
-      - .idea/**
-      - .github/**
-      - .oss-ai-helper-rules/**
-      - AGENTS.md
-      - README.md
-      - SECURITY.md
-      - Jenkinsfile
-      - Jenkinsfile.*
-      - NOTICE.txt
-
-concurrency:
-  group: ${{ github.workflow }}-${{ github.event.pull_request.number || 
github.ref }}
-  cancel-in-progress: true
-
-permissions:
-  contents: read
+  workflow_dispatch:

Review Comment:
   Optional: the top-level `permissions: contents: read` was removed together 
with the `pull_request` trigger and `concurrency`. The job still runs on manual 
dispatch, so it would fall back to the repository's default `GITHUB_TOKEN` 
permissions. Keeping the read-only block costs nothing:
   
   ```suggestion
     workflow_dispatch:
   
   permissions:
     contents: read
   ```



-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to