Skip to content

Remove the PR body sanitizer's untrusted block from the release notes #9292

Description

@Jason3S

A PR body sanitizer is planned as a reusable workflow in streetsidesoftware/actions. It will expose hidden text in a PR body as a code block flagged as untrusted, so reviewers can see it before merge.

That exposed block must not reach the release notes, or the hidden text gets published after all. Once the sanitizer's block format is settled:

  • Remove the sanitizer's block in scripts/lib/clean-release-body.mts, the same way "For maintainers" blocks are removed.
  • Add cases to scripts/check-clean-release-body.mts, including a block shown inside a code block, which must be kept.
  • Describe it in docs/releasing.md ("Cleaning PR bodies") and in the release-notes skill.
  • Run the sanitizer in this repo, if it isn't already.

Depends on the sanitizer's design in streetsidesoftware/actions.

Agent instructions

The sanitizer in streetsidesoftware/actions exposes hidden text in PR bodies as a marked, untrusted block. Read its documented block format first; if it isn't documented, stop and ask. In scripts/lib/clean-release-body.mts, remove that block from each PR body the way <details><summary>For maintainers</summary> blocks are removed (outside code, nesting-aware), add cases to scripts/check-clean-release-body.mts (removed in prose, kept inside a code block, next to a For maintainers block), and update docs/releasing.md ("Cleaning PR bodies") and .claude/skills/release-notes/SKILL.md. Run node ./scripts/check-clean-release-body.mts, pnpm run lint-ci, and pnpm run check-spelling. Title: chore:.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions