name: Bonk on: issue_comment: types: [created] pull_request_review_comment: types: [created] pull_request_review: types: [submitted] concurrency: group: ${{ github.workflow }}-${{ github.event.pull_request.number || github.event.issue.number || github.ref }} cancel-in-progress: false jobs: bonk: if: github.event.sender.type != 'Bot' && (contains(github.event.comment.body, '/bonk') || contains(github.event.comment.body, '@ask-bonk')) runs-on: ubuntu-latest timeout-minutes: 30 permissions: id-token: write contents: write issues: write pull-requests: write steps: - name: Checkout repository uses: actions/checkout@v6 with: fetch-depth: 1 - name: Run Bonk uses: ask-bonk/ask-bonk/github@main env: CLOUDFLARE_ACCOUNT_ID: ${{ secrets.CF_AI_GATEWAY_ACCOUNT_ID }} CLOUDFLARE_GATEWAY_ID: ${{ secrets.CF_AI_GATEWAY_NAME }} CLOUDFLARE_API_TOKEN: ${{ secrets.CF_AI_GATEWAY_TOKEN }} with: model: 'cloudflare-ai-gateway/anthropic/claude-opus-4-6' mentions: '/bonk,@ask-bonk' permissions: write opencode_version: "1.14.33" # token_permissions defaults to WRITE (i.e. Bonk can push commits). # We intentionally leave it that way here because users may ask Bonk # to update their PR via /bonk.