Hacktoberfest 2026:メンテナが10月に向けて印を付けた、オープンで初心者向けの issue。 Hacktoberfest の issue を見る

docs inconsistency for environment creation and unreasonable permissions required

オープン
#6,745 コメント 0 件 リアクション 0 件 担当者 0 名 GitHub で見る

メンテナーはふだん 1 日以内に返信

まだ誰も着手していません。

評価

難易度
3/5
見積もり時間
1〜2日
初心者へのやさしさ
58/100
issue の種類
ドキュメント
明瞭さ
おおむね明確
活発さ
静か
技術スタック
github, openapi

調査の方向性

権限の概要ページと、PUT /repos/{owner}/{repo}/environments/{environment_name} のエンドポイント固有のドキュメントを比較し、その後、報告された GitHub Enterprise Cloud の動作を確認します。ドキュメントに記載された必要な権限が実際の動作と一致し、administration: write が引き続き必要な場合はその理由が記録されていれば完了です。

索引モデルが issue の本文から書いたものです。

説明

feature

Platform: GitHub Enterprise Cloud (*.ghe.com), reproduced 2026-07-11


Documentation inconsistency

The permissions required for GitHub Apps summary page lists PUT /repos/{owner}/{repo}/environments/{environment_name} under the environments permission (write). The endpoint-specific documentation appears to contradicts this, stating administration: write is required.

What I expected

A GitHub App with environments: write should be able to create deployment environments via PUT /repos/{owner}/{repo}/environments/{environment_name}. The environments permission exists specifically to manage deployment environments — granting it at write level implies CRUD access.

Behaviour

PUT /repos/{owner}/{repo}/environments/{environment_name} returns 403 Resource not accessible by integration with an App token that has:

{
  "environments": "write",
  "secrets": "write",
  "actions_variables": "write",
  "metadata": "read"
}

Adding administration: write resolves the 403. Confirmed via direct API test with a minted installation access token.

Why this matters

Least privilege

Requested change

Either

  1. Make environments: write sufficient to create/update environments, or
  2. If administration: write is genuinely required by design, document why and update the permissions summary page to reflect this accurately

I prefer number 1 😄

Related
主要言語
言語のデータがありません
スター
1.6k
フォーク
342
平均マージ
7時間 29分
マージ済み PR(30日)
62

環境構築

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

github/rest-api-description のほかの issue

github/rest-api-description の issue をすべて見る

似ている issue

Backend & API Design の issue をもっと見る

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。