AI Workshop
Episode 9 of 10Upcoming

The agent on a team: review and CI

Agents in pull requests and CI: automated review, repo rules and shared team skills.

Wednesday 2 December at 19:00 Moscow time· 90 min

The link arrives by email an hour before the stream

Sign up — a day before we'll send a reminder with the episode plan, and an hour before the start the stream link. The player appears on this page 15 minutes before the start.

What we'll show

  1. The agent in GitHub Actions: reviewing a pull request and answering a mention in an issue
  2. Headless mode: the agent as a pipeline step, not a chat
  3. Shared team rules: CLAUDE.md in the repo, skills and commands for everyone
  4. Secrets in CI and what the agent may and may not do in a pipeline
  5. Typical risks: prompt injection via issues and PRs, leaks, over-privileged tokens

What you take away

A working workflow: the agent reviews PRs and answers mentions in issues.

Checklist: the agent in CI

  • Да: The agent's key is in repository secrets, not in code or the workflow file
  • Да: The CI token has least privilege: read code, comment on PRs, no push to main
  • Да: The agent in CI never merges on its own: the final call is a human's
  • Да: Issue and PR text is treated as untrusted input (prompt injection)
  • Да: Team rules live in CLAUDE.md in the repo, shared skills in .claude/skills
  • Да: Agent review complements human review, it doesn't replace it

Harness in this episode

CI is the team harness: the same checks you run locally now stand in the way of every change to the repo.

The full harness episode