Hosted MCP cannot resolve review threads with a fine-grained PAT that succeeds via GraphQL
Nadie ha tomado este issue todavía.
Evaluación
- Dificultad
- 4/5
- Tiempo estimado
- 3-5 días
- Aptitud para principiantes
- 35/100
- Tipo de issue
- Error
- Claridad
- Bastante claro
- Estado de actividad
- Activo
- Stack tecnológico
- github, go
- Área
- api, authentication, backend
Línea de trabajo
Comienza en el punto de entrada de la herramienta alojada de MCP para resolver hilos de revisión y reproduce el fallo utilizando el endpoint, los toolsets y el fine-grained PAT indicados. Compara la ruta de autorización de la operación con la mutación GraphQL resolveReviewThread exitosa. La tarea está completada cuando la operación de MCP resuelva el hilo de revisión con el mismo token y conserve el comportamiento existente de inline-reply.
Escrito por el modelo de indexación a partir del texto del issue.
Descripción
Summary
GitHub hosted remote MCP fails to resolve pull request review threads with a fine-grained personal access token, returning:
Resource not accessible by personal access token
The same token successfully performs both unresolveReviewThread and resolveReviewThread through GitHub GraphQL. This appears related to #2381, which reports a different hosted-MCP PR operation failing while the equivalent direct API request succeeds.
Environment
- Server: GitHub-hosted remote MCP
- Endpoint:
https://api.githubcopilot.com/mcp/ - Transport: Remote HTTP
- Client: OpenCode
- Authentication: fine-grained PAT supplied in the
Authorization: Bearerheader - MCP toolsets:
repos,issues,pull_requests - Repository:
crsiebler/pogo-gbl-analyzer - Token repository permission: Pull requests: Read and write
- Approximate failure time:
2026-09-08 05:35 UTC
Reproduction
- Configure the hosted server with
oauth: false, the endpoint above, anAuthorization: Bearer {env:GITHUB_MCP_TOKEN}header, andX-MCP-Toolsets: repos,issues,pull_requests. - Authenticate with a fine-grained PAT that has access to
crsiebler/pogo-gbl-analyzerand Pull requests: Read and write. - Read review threads for
crsiebler/pogo-gbl-analyzer#10. - Attempt to resolve
PRRT_kwDOPgvNY86gGnRDwith the MCP review-thread resolution tool. - Observe:
failed to resolve review thread: Resource not accessible by personal access token
Expected Behavior
The MCP operation resolves the review thread, matching GitHub GraphQL behavior for the same token.
Actual Behavior
The MCP operation returns a personal-access-token authorization error. Other writes succeeded in the same MCP workflow: inline replies were posted to five pull request review-comment threads.
Direct GraphQL Verification
Using the same fine-grained PAT outside MCP, unresolving the thread succeeded:
GH_TOKEN=github_pat_REDACTED gh api graphql \
-f query='mutation($threadId: ID!) {
unresolveReviewThread(input: {threadId: $threadId}) {
thread { id isResolved }
}
}' \
-f threadId='PRRT_kwDOPgvNY86gGnRD'
Response:
{
"data": {
"unresolveReviewThread": {
"thread": {
"id": "PRRT_kwDOPgvNY86gGnRD",
"isResolved": false
}
}
}
}
Resolving it again with the same token also succeeded:
GH_TOKEN=github_pat_REDACTED gh api graphql \
-f query='mutation($threadId: ID!) {
resolveReviewThread(input: {threadId: $threadId}) {
thread { id isResolved }
}
}' \
-f threadId='PRRT_kwDOPgvNY86gGnRD'
Response:
{
"data": {
"resolveReviewThread": {
"thread": {
"id": "PRRT_kwDOPgvNY86gGnRD",
"isResolved": true
}
}
}
}
Impact
Agents can reply to inline review feedback but cannot complete the normal review workflow by resolving addressed threads through the hosted GitHub MCP server, despite the configured PAT being authorized for the underlying GraphQL mutation.
Notes
- The token value is intentionally omitted.
- The hosted endpoint does not expose a locally inspectable server version.
- Inline reply timestamps immediately preceding the failure were
2026-09-08T05:35:45Zand2026-09-08T05:35:46Z.
- Lenguaje dominante
- Go
- Estrellas
- 33.1k
- Forks
- 5k
- Merge medio
- 2 d 1 h
- PR fusionados (30 d)
- 25
Guía de contribución
Primeros pasos
- Lee el issue completo y luego la guía de contribución del proyecto.
- Comenta en el issue que vas a ocuparte — evita que dos personas hagan lo mismo.
- Haz un fork del repositorio y trabaja en una rama.
- Abre un pull request que haga referencia al número del issue.
Más de github/github-mcp-server
-
bug
Dificultad 2/5 1-3 horas Aptitud para principiantes 84/100
github/github-mcp-server#3235 ·
-
enhancement
Dificultad 1/5 Menos de una hora Aptitud para principiantes 88/100
github/github-mcp-server#3042 · 2 comentarios ·
-
bug
Dificultad 2/5 1-3 horas Aptitud para principiantes 72/100
github/github-mcp-server#3032 · 1 reacción ·
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 74/100
github/github-mcp-server#2803 · 1 comentario ·
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 76/100
github/github-mcp-server#2740 ·
Todos los issues de github/github-mcp-server
Issues similares
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 88/100
NVIDIA/gpu-operator#2955 ·
-
agentic-workflows
Dificultad 2/5 1-3 horas Aptitud para principiantes 68/100
-
Broadcast Documentation Abierto
Dificultad 1/5 Menos de una hora Aptitud para principiantes 90/100
kovidgoyal/kitty#10516 ·
-
CVE-2024-24786 CPE mismatch Abiertobug
Dificultad 1/5 Menos de una hora Aptitud para principiantes 90/100
cisagov/vulnrichment#337 ·
-
Dificultad 1/5 Menos de una hora Aptitud para principiantes 72/100