Skip to content

Open Pstack 1.6.1 fixes Devin read-only tool selection

Choose a tag to compare

@arjitj2 arjitj2 released this 28 Sep 19:55
fce83ae

This historical checkpoint is backfilled from the original merged version. No code changes are included in this release publication.

Cursor baseline: 0.15.5. Pull request #31.

Read-only Devin workers now disable the exec tool. Previously the model could select that tool, which the permissions denied, and the turn ended without a final answer. Writers keep sandboxed execution. Existing permission denials and final-answer checks are unchanged.

Evidence: the Devin read-only investigation, with sanitized runner outcomes, parent results, and final candidate results.

Validation

Original validation and review. The release package tree matches the tested PR candidate 27824183a828d694cd7387d7d9157d3adc4ebddc exactly.

Package tree: d908b02a7b591e91e5e056906b81d11296e24277. Original merge: fce83ae, 2026-09-25.

Known limits

Codex validation explicitly selected the installed candidate because its skill catalog was stale. Devin backend identity remains pinned-argument evidence.

Checkpoint history

Previous tested published tag: v1.6.0. Adaptations and exclusions.