Skip to content

Add Forge sensitive summary guardrails#3

Merged
im-sham merged 1 commit into
mainfrom
codex/g100-forge-sensitive-summary-guardrails
May 5, 2026
Merged

Add Forge sensitive summary guardrails#3
im-sham merged 1 commit into
mainfrom
codex/g100-forge-sensitive-summary-guardrails

Conversation

@im-sham
Copy link
Copy Markdown
Owner

@im-sham im-sham commented May 5, 2026

Summary

  • add summary-only validation for Forge core incident free-text fields
  • preserve existing pointer ref and observed_state mapping guards while expanding obvious raw/sensitive key coverage
  • surface validation failures cleanly through CLI and MCP logging
  • document the G100B summary/ref-only contract in README and CONTRACTS

Verification

  • .venv/bin/pytest tests/test_cli.py tests/test_mcp_http.py tests/test_models.py -q -> 40 passed
  • .venv/bin/ruff check forge_cli tests -> All checks passed
  • git diff --check -> passed

Boundary

Forge remains incident-memory and failure-pattern truth only. This PR does not add workflow truth, Governance approval/redaction/export truth, source payload storage, training approval, policy-learning approval, production automation approval, tenant metadata, or audit maturity.

@im-sham im-sham merged commit 375edab into main May 5, 2026
3 checks passed
@im-sham im-sham deleted the codex/g100-forge-sensitive-summary-guardrails branch May 5, 2026 19:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant