Skip to content

[aw] Breaking Change Checker exceeded tool denial limit #63458

Description

@github-actions

Workflow Failure

Workflow: Breaking Change Checker
Branch: main
Run: https://github.com/github/gh-aw/actions/runs/36150582095

Warning

Excessive Tool Denials: The Copilot SDK hit the max tool denial guardrail and stopped the session early (3/3).

Last denied request
shell(git rev-parse --is-shallow-repository)
Last 5 tool calls
  • bash(cd /home/runner/work/gh-aw/gh-aw && git show --stat 48411df | head -50)
  • bash(cd /home/runner/work/gh-aw/gh-aw && git show --stat 48411df | wc -l echo "---CLI files---" git show --stat 48411df | ...)
  • bash(cd /home/runner/work/gh-aw/gh-aw && git log --oneline -5 echo "---" git show 48411df --format="%P" -s echo "---diff s...)
  • bash(cd /home/runner/work/gh-aw/gh-aw && git log --all --oneline | wc -l && git rev-list --count HEAD && git log --all --o...)
  • bash(cd /home/runner/work/gh-aw/gh-aw && git rev-parse --is-shallow-repository)

This is a structured guardrail event (guard.tool_denials_exceeded) captured in events.jsonl.

How to fix this

The prompt attempted actions outside the workflow's allowed tools.

Update the workflow prompt and/or permissions so required actions are permitted:

The workflow breaking-change-checker stopped because the Copilot SDK exceeded its tool denial threshold (3/3).
Last denied request:
shell(git rev-parse --is-shallow-repository)

Please update the workflow so the prompt only uses tools permitted by the workflow tool policy.

Action Required

Assign this issue to an agent to debug and fix the issue.

Optimize token consumption

This failure was triggered by a guardrail limit (max-tool-denials). Use this prompt with any coding agent (GitHub Copilot, Claude, Gemini, etc.) to analyze token usage and reduce costs:

Optimize the agentic workflow token consumption using https://raw.githubusercontent.com/github/gh-aw/main/optimize.md

The workflow run is at https://github.com/github/gh-aw/actions/runs/36150582095
Debug with any coding agent

Use this prompt with any coding agent (GitHub Copilot, Claude, Gemini, etc.):

Debug the agentic workflow failure using https://raw.githubusercontent.com/github/gh-aw/main/debug.md

The failed workflow run is at https://github.com/github/gh-aw/actions/runs/36150582095
Manually invoke the agent

Debug this workflow failure using your favorite Agent CLI and the agentic-workflows prompt.

Tip

Stop reporting this workflow as a failure

To stop a workflow from creating failure issues, set report-failure-as-issue: false in its frontmatter:

safe-outputs:
  report-failure-as-issue: false

Generated from Breaking Change Checker · copilot · 17.1 AIC · ◷

  • expires on Sep 26, 2026, 3:00 AM UTC

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions