Skip to content

[codex] Guardrail candidate: Workflow shell footgun (workflow-shell-footgun) #81

@haasonsaas

Description

@haasonsaas

Workflow shell footgun

This issue routes a recurring review-feedback class to the repo that needs the prevention guardrail.

Guardrail to build

Add or extend workflow lint/security checks so fragile shell and GitHub Actions mistakes fail before review.

Representative feedback in this repo

Finding fingerprints

  • 129f54752faf4b7e165b7944b5bf10fdb6c1c5d6985bba45ac521c5671aaa015

Acceptance criteria

  • A repo-local guardrail fails for at least one representative feedback shape listed above.
  • The guardrail is wired into the smallest relevant CI, preflight, or test target in this repo.
  • The issue is closed only after the guardrail merges and the feedback sentinel reports this repo/class fingerprint set as already closed or absent.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions