# CI changes require one approval from an owner other than the PR author once
# the main ruleset enables code-owner reviews. Keep this file self-owned.
# New commits must dismiss stale approvals. Ordinary application files have no
# ownership rule here; CI Integrity still validates the resulting configuration.
/.github/CODEOWNERS @aipoch/ci-maintainers
/CODEOWNERS @aipoch/ci-maintainers
/.github/workflows/ @aipoch/ci-maintainers
/.github/actions/ @aipoch/ci-maintainers
/.github/dependabot.yml @aipoch/ci-maintainers
/.github/labels.json @aipoch/ci-maintainers
/scripts/ci/ @aipoch/ci-maintainers

# Ordinary registration is checked as data by trusted-base CI Integrity.
# Last matching pattern wins; keep exceptions limited to validated JSON registration data.
/scripts/ci/module-impact.json
/scripts/ci/module-impact/*.json
