docs: clarify per-agent authentication via TOKEN_* secrets (#60)

This commit is contained in:
2026-07-05 13:35:50 +00:00
parent 738848304e
commit ff854f2a72
+2 -1
View File
@@ -79,7 +79,8 @@ points `$SCRIPTS` at it. Keep the workflow and its scripts moving together on `m
| `AGENT_TOKEN` | PAT (issue/repository/organization/misc read+write, cross-repo) — posts the delegation comment that fires the next agent **and** powers the `gitea-api` skill (read/write issues, PRs, comments, labels, and Actions runs/logs across any repo). Do not re-narrow its scopes without also removing the `gitea-api` skill. |
| `TOKEN_PM`,`TOKEN_SENIOR`,`TOKEN_JUNIOR`,`TOKEN_LEAD`,`TOKEN_QA` | optional — post/commit as each agent's own Gitea user (falls back to the bot) |
`GITEA_TOKEN` is auto-provided. Tip: set these once at the **org** level so every repo inherits
`GITEA_TOKEN` is auto-provided, while per-agent `TOKEN_*` secrets let each agent authenticate and
post as its own Gitea user. Tip: set these once at the **org** level so every repo inherits
them via `secrets: inherit`.
## Also add to each consuming repo