Choose the repositories
Monitor only the repositories that belong in the workspace rather than granting broad, unexplained access.
Integration / GitHub
GitHub supplies the lifecycle signal: which repository owns the work, whether the pull request is open or closed, and when that state changed. LintCycle uses that context without writing to your repositories.
The operating principle
A merged pull request is one signal. LintCycle compares it with provider inventory and deterministic rules before it produces a finding.
Why GitHub
Monitor only the repositories that belong in the workspace rather than granting broad, unexplained access.
Use repository and pull-request metadata to understand whether preview work is still active, merged, or closed.
Every correlated finding points back to the pull request evidence that contributed to the decision.
How it works
Authorize the read-only installation and select the repositories the LintCycle workspace should inventory.
LintCycle records the minimum repository and pull-request metadata needed for deterministic correlation.
Pull-request evidence is compared with Railway and Supabase inventory before a finding is created.
Questions
No. The version-one provider boundary is read-only and includes no pull-request write actions.
No. LintCycle requires sufficient provider evidence and prefers no finding when correlation is uncertain.
Yes. Repository selection belongs to the authenticated organization and is enforced server-side.
Close the loop
Start with read-only pull-request context, then add the providers that create your preview resources.