Telemetry
Integration guide

GitHub Actions Workflow Telemetry Integration

Send a bounded terminal workflow outcome from GitHub Actions with run, attempt, job, conclusion, duration, and release context.

Reviewed by the Telemetry product team on . Instrumentation contract, privacy boundaries, and implementation guidance. Review standards and ownership

Useful for
  • CI workflow reliability
  • Scheduled workflow monitoring
  • Release pipeline duration and retry analysis
Implementation evidence

GitHub Actions Workflow Telemetry Integration: from boundary to verified row

Use GitHub Actions Workflow Telemetry Integration at a controlled application boundary, keep the event contract small, and verify a known outcome before building aggregate views.

  1. 1

    Choose the outcome

    CI workflow reliability

  2. 2

    Define the contract

    workflow_name, job_name, run_id, run_attempt, status, duration_ms, repository, and release

  3. 3

    Instrument the boundary

    Run the step with if: always() so failed jobs produce a terminal record, and use continue-on-error: true if observability delivery must not change the workflow conclusion.

  4. 4

    Verify the evidence

    Exercise a known fixture, then inspect github_workflow_completed for one correctly typed terminal row.

Before you start

Prerequisites and boundaries

  • A write-scoped Telemetry key stored as a GitHub Actions secret
  • A final step guarded with always() and configured not to override the workflow outcome when telemetry delivery fails
  • An allowlist of GitHub-provided variables that excludes event payloads, tokens, actor data, commit messages, and pull-request content

Delivery setup

Install and initialize server-side

Use the cURL examples with explicit connection and request timeouts. Keep ingestion credentials out of browser bundles, client-visible environment variables, source control, logs, and exception messages.

  1. 1Prepare one reusable server-side delivery client with bounded network behavior.
  2. 2Add the outcome event at the success, failure, retry, or timeout boundary.
  3. 3Send controlled fixtures and inspect the stored rows before enabling an alert.

Snippet

Start with one structured event

Add this shape where the workflow completes, fails, or retries. Then build the dashboard from real fields.

github-actions

GitHub Actions Workflow Telemetry Integration event

bash
# Use in a final GitHub Actions step with:
# if: ${{ always() }}
# continue-on-error: true
# env:
#   TELEMETRY_API_KEY: ${{ secrets.TELEMETRY_WRITE_KEY }}
#   JOB_STATUS: ${{ job.status }}

jq -n   --arg workflow_name "$GITHUB_WORKFLOW"   --arg job_name "$GITHUB_JOB"   --arg run_id "$GITHUB_RUN_ID"   --arg run_attempt "$GITHUB_RUN_ATTEMPT"   --arg status "$JOB_STATUS"   --arg repository "$GITHUB_REPOSITORY"   --arg release "$GITHUB_SHA"   '{
    table: "github_workflow_completed",
    data: {
      workflow_name: $workflow_name,
      job_name: $job_name,
      run_id: $run_id,
      run_attempt: ($run_attempt | tonumber),
      status: $status,
      repository: $repository,
      release: $release
    }
  }' |
curl --fail-with-body --connect-timeout 2 --max-time 5   --request POST "https://api.telemetry.sh/log"   --header "Authorization: ${TELEMETRY_API_KEY}"   --header "Content-Type: application/json"   --data-binary @-

Event contract

workflow_name, job_name, run_id, run_attempt, status, duration_ms, repository, and release

trigger_type, runner_environment, scheduled, retry_recovered, and controlled error_type when approved

No GITHUB_TOKEN, secrets context, github.event payload, environment dump, commit message, branch supplied by an untrusted fork, or arbitrary step output

Implementation checkpoints

Checkpoint 1

Run the step with if: always() so failed jobs produce a terminal record, and use continue-on-error: true if observability delivery must not change the workflow conclusion.

Checkpoint 2

GitHub warns that contexts can contain sensitive information and that some context values should be treated as untrusted input. Expand only the documented allowlist into shell environment variables.

Checkpoint 3

Use GITHUB_RUN_ID as the logical run identifier and GITHUB_RUN_ATTEMPT to distinguish reruns. Measure duration from a controlled start timestamp rather than inferring it from unrelated events.

Verification

Prove the event arrived

Run this after exercising known success and failure cases. Replace the fallback table name if your final event contract differs from the snippet.

github-actions-verification

GitHub Actions Workflow Telemetry Integration verification query

sql
SELECT *
FROM github_workflow_completed
ORDER BY timestamp_utc DESC
LIMIT 20;
Confirm one terminal row per logical outcome, with the expected status, identifiers, units, and UTC time.
Inspect the inferred schema and verify that retries do not change field types or generate a new logical event ID.
Search the stored fields for credentials, raw payloads, prompts, private content, and unbounded error messages.
Exercise a provider timeout, ingestion rejection, and process shutdown before treating the dashboard as complete.

Implementation references

Review the event contract, data-safety guidance, and upstream primary documentation before enabling a new production path.

Production boundary

Keep the outcome event small and recoverable

This pattern provides

  • A bounded, SQL-ready outcome beside the upstream workflow.
  • Stable fields for dashboards, alerts, and cross-event correlation.
  • A fixture-driven path for validating success, failure, retry, and timeout behavior.

This pattern does not provide

  • An OTLP exporter, automatic collection pipeline, or replacement for detailed traces and diagnostic logs.
  • Exactly-once delivery merely because the payload contains an event ID.
  • Permission to collect raw provider payloads, user content, credentials, or regulated data.

Event schema starting points

Review the row grain, emit boundary, required types, privacy classes, example payload, and validation checklist before adapting a query or snippet to production.

Related product capability

Continue this workflow in Alerts

Promote the reviewed reliability query into an owned threshold and response workflow.

Related SQL recipes

Answer the next question with SQL

Run the query against the structured fields from this workflow, inspect the example result, and turn a useful answer into a dashboard or alert.

Browse all recipes

Browse by implementation family

Compare related integration patterns

Templates to pair with this integration

More integrations