open-codeasier v0.3.3
[0.3.3] - 2026-09-09
Changed
- Store cross-review run manifests at
~/.open-codeasier/cross-reviewand snapshot worktrees at~/.open-codeasier/cross-review/.worktrees/<runID>/worktree. Override the parent directory withOPEN_CODEASIER_STATE_HOME. The previousXDG_STATE_HOME/ macOS Application Support /%LOCALAPPDATA%/~/.local/statewrite locations are no longer used; those roots are still scanned so existing runs are not orphaned, and released manifests (no live snapshot worktree) are moved to the new root. Parent-session judging needs a one-timeexternal_directoryallow rule for~/.open-codeasier/cross-review/**.
Fixed
- Catch
/cross-review-auditup with the current cross-review protocol. The payload now carriescross_review_configpreviews, start arguments (target,hasEvidenceDir,reviewModelCount,judgeModel), status results (readyToFinalize,actionRequiredroles, stray-timeoutActionwarning), rejected-call errors,adapterGatherer,snapshot,finalStatus, and per-role timing, timeout, retry, and boundederrorfields, so timeout decisions, adapter failures, and evidence provenance can be graded instead of inferred. - Stop grading a failed PR adapter as a broken evidence contract: a new
adapter.gathercheck reports the adapter error andrun.evidence_contractisinsufficient-evidencewhen no reviewer was dispatched, including a legacy blocking persist that omittedadapterGatherer. - Stop failing
role.prompt.tools_denyfor prompts dispatched beforecross_review_configorcross_review_auditjoinedREAD_ONLY_TOOLS. The check fails only when a write tool is absent or any deny key is enabled, and names absent primary-session-gated keys in its detail. - Add
role.session.directory, which verifies that snapshot-run role sessions are bound to the snapshot worktree, and read role sessions through the run and caller directories when the worktree no longer answers.
Full Changelog: v0.3.2...v0.3.3