flowpactworkflow contracts
Rules

FP201 · missing-required-secret

A reusable workflow is called without one of its required secrets.

CodeNameCategoryDefault severity
FP201missing-required-secretSecrets🔴 error

Why it matters

GitHub fails the run when a required secret is not passed — but only when that call path actually executes.

How to fix

Pass the secret under secrets:, or use secrets: inherit if the callee should see all repository secrets.

Example

uses: ./.github/workflows/deploy.yml
secrets:
  token: ${{ secrets.TOKEN }}
  # deploy.yml also requires "registry-password"

Configure

Change the severity (or turn the rule off) in .github/flowpact/flowpact.config.yml, by code or by name:

.github/flowpact/flowpact.config.yml
rules:
  FP201: off
  # or: missing-required-secret: error

Explain it in the terminal:

flowpact explain FP201

On this page