Skip to content

v0.3.0

Choose a tag to compare

@github-actions github-actions released this 05 Oct 05:01
· 15 commits to main since this release
1ddad32

decide audits a codebase for security mistakes, and pays once for each
answer. The plugin drops its reply check.

Added

  • decide runs view --top N. Show the flagged items first, then those
    nearest a flag, to read a long run from the top.
  • /decide:audit. A plugin skill: decide ranks every function with
    security, and Claude confirms the top 15 by reading them.
  • security. A built-in template that asks, in one request per
    function, about SQL and command injection, SSRF, XSS, weak hashes,
    ciphers and random values, and TLS verification turned off.
  • An answer cache. decide run and runs resume reuse answers to the
    same question about the same text from the same model name, and ask only
    about what changed, or when a live answer shows the model changed.
  • /decide:hunt. A plugin skill: give it a fix commit or pull request,
    and Claude writes one question about the mistake, tests it on the fix,
    sweeps every function, and confirms the top candidates.

Changed

  • The plugin checks commands only in bypass mode, and only for severe
    harm.
    command-risk gains a severe question, flagged at 80%. Local
    cleanup, such as git checkout -- ., no longer asks.

Removed

  • reply-check and the plugin's reply check. It flagged about one
    reply in five, mostly honest ones it could not see the evidence for.