-
Notifications
You must be signed in to change notification settings - Fork 3
All issues
Issue creation is restricted in this repository
Issues
is:issue state:open
is:issue state:open
Search results
Verify a selected permission correction against the original reviewed base in the existing workflow
enhancementNew feature or requestNew feature or requestP1Next after P0; blocks other work or ships a misleading resultNext after P0; blocks other work or ships a misleading resultStatus: Open.Turn a supported permission change into an evidence-bound decision question and next step
enhancementNew feature or requestNew feature or requestP1Next after P0; blocks other work or ships a misleading resultNext after P0; blocks other work or ships a misleading resultStatus: Open.Value gate before any outreach: measure automatic author-actionable value on a released build
area:benchmarkLabeled corpus, accuracy measurementLabeled corpus, accuracy measurementarea:releaseRelease pipeline, packaging, and safety qualificationRelease pipeline, packaging, and safety qualificationenhancementNew feature or requestNew feature or requestP1Next after P0; blocks other work or ships a misleading resultNext after P0; blocks other work or ships a misleading resultStatus: Open.Conditional: show the residual reach of a prefix allow narrowed only by specific deny rules
area:verifyverify / preview orchestration and SHIP-VERIFY-* checksverify / preview orchestration and SHIP-VERIFY-* checksenhancementNew feature or requestNew feature or requestP2Queued; valuable but not blockingQueued; valuable but not blockingStatus: Open.Decide: read agent-launch arguments in repository scripts, or keep them a named unread surface
P2Queued; valuable but not blockingQueued; valuable but not blockingquestionFurther information is requestedFurther information is requestedStatus: Open.check and diff disagree on prompt-disabling settings: enableAllProjectMcpServers as CONFIG-PARSE-FAILED, dontAsk/bypassPermissions medium vs blocking wildcard, setting names missing
area:agent-modeAgent-mode contract: control envelope, next actions, command stringsAgent-mode contract: control envelope, next actions, command stringsbugSomething isn't workingSomething isn't workingP2Queued; valuable but not blockingQueued; valuable but not blockingStatus: Open.Note an inline hook that unconditionally returns permissionDecision allow for a broad matcher
area:verifyverify / preview orchestration and SHIP-VERIFY-* checksverify / preview orchestration and SHIP-VERIFY-* checksenhancementNew feature or requestNew feature or requestP2Queued; valuable but not blockingQueued; valuable but not blockingStatus: Open.Note an unpinned MCP launch source (
@latest, no version, git without ref, image without digest) after launch arguments are publishedarea:verifyverify / preview orchestration and SHIP-VERIFY-* checksverify / preview orchestration and SHIP-VERIFY-* checksenhancementNew feature or requestNew feature or requestP2Queued; valuable but not blockingQueued; valuable but not blockingStatus: Open.Rate exec-equivalent Bash allow rules (interpreter -c/-e, npx, uv run, docker exec, xargs, env) as reaching arbitrary code
area:verifyverify / preview orchestration and SHIP-VERIFY-* checksverify / preview orchestration and SHIP-VERIFY-* checksenhancementNew feature or requestNew feature or requestP2Queued; valuable but not blockingQueued; valuable but not blockingStatus: Open.Read agent launches in CI workflows: known agent action inputs, literal agent CLI run steps and head-ref checkouts
area:verifyverify / preview orchestration and SHIP-VERIFY-* checksverify / preview orchestration and SHIP-VERIFY-* checksenhancementNew feature or requestNew feature or requestP1Next after P0; blocks other work or ships a misleading resultNext after P0; blocks other work or ships a misleading resultStatus: Open.An unchanged instruction limit reached through an in-tree link refuses the whole comparison instead of being named unchanged
area:verifyverify / preview orchestration and SHIP-VERIFY-* checksverify / preview orchestration and SHIP-VERIFY-* checksbugSomething isn't workingSomething isn't workingP2Queued; valuable but not blockingQueued; valuable but not blockingStatus: Open.Name relevant inputs the host entry does not read, so a zero-row result is never read as covered (#812 slice 2)
enhancementNew feature or requestNew feature or requestP1Next after P0; blocks other work or ships a misleading resultNext after P0; blocks other work or ships a misleading resultStatus: Open.