Skip to content

guardrails: safe agents and workflow commands #5

@terisuke

Description

@terisuke

Parent epic: #1

Source brief:

  • docs/ai-guardrails/issues/004-safe-agents-and-commands.md
  • docs/ai-guardrails/migration/claude-code-skills-inventory.md

Problem

Raw built-in agents are too permissive for an internal product. The repo needs a safer default operating model for implementation, review, and release workflows.

Deliverables

  • hardened default primary agent
  • review-oriented subagent
  • slash commands for /implement, /review, /ship, and /handoff
  • explicit permission policy for dangerous shell patterns and write operations

Acceptance

  • default agent is not an unrestricted build clone
  • review workflow can run without edit access
  • release workflow cannot bypass explicit gates

Notes

Dependencies

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions