Stop That Shit 0.0.3 — Technical Preview 3
Pre-release
Pre-release
Stop That Shit 0.0.3 — Technical Preview 3
0.0.3 turns the current source into an immutable preview for community
testing. It does not add a new enforcement family.
What changed
- CI now installs declared development dependencies before verification on the
Ubuntu/Windows and Node 18/22 matrix. - Paired evaluation handles simulated Windows paths consistently.
- Generated-schema checks no longer fail only because a worktree uses CRLF.
- The README now leads with the small-task failure mode: one file becomes
modules, subagents, dependencies, and hashes nobody requested. - The evidence page records the maintainer's SHA-256 observation as anecdotal,
keeps the live null result visible, and does not infer host execution from a
returned permission deny.
Evidence
- 92/92 automated tests pass locally.
- 14/14 executable Bad/Good policy arms pass.
- The release allowlist excludes private launch material and captured Runtime
data. - A controlled
reviewHook demo returned
deny / I/MODE_FORBIDS_MUTATIONforapply_patchand wrote a matching
metadata-only Runtime event.
This proves the covered policy and response path. It does not prove a general
improvement in Codex behavior. The small live intent pilot remains a null
result because baseline Codex behaved correctly too. Host effect remains
unobserved.
Install
codex plugin marketplace add lennney/stop-that-shit
codex plugin add stop-that-shit@stop-that-shitRestart Codex and inspect /hooks before trusting the two handlers.
Repository: https://github.com/lennney/stop-that-shit
Evidence: https://github.com/lennney/stop-that-shit/blob/0.0.3/EVIDENCE.md