Skip to content

fix(service-analytics)!: one field-level read gate at the analytics door, before either strategy (#20917) #29615

fix(service-analytics)!: one field-level read gate at the analytics door, before either strategy (#20917)

fix(service-analytics)!: one field-level read gate at the analytics door, before either strategy (#20917) #29615

Triggered via pull request September 30, 2026 20:24
Status Success
Total duration 2m 48s
Artifacts –

pr-automation.yml

on: pull_request
Check PR Size
Check PR Size
Check Changeset
2m 45s
Check Changeset
Auto Label
0s
Auto Label
Fit to window
Zoom out
Zoom in

Annotations

2 notices
Check Changeset: .changeset/20917-analytics-field-permission-gate.md#L0
ADR-0087 exemption (no-migration-prescription): No authorable key, export or stored shape is removed or renamed. The change refuses analytics queries that read a field the caller's field-level permissions hide, which the engine already refuses on the data API and on the ObjectQL strategy, so there is nothing for `objectstack migrate meta` to rewrite. The one public-surface addition is a new optional service hook.
Check Changeset
"The ubuntu-latest label will migrate to Ubuntu 26 beginning October 19, 2026. For more information, see https://github.com/actions/runner-images/issues/14748"