Skip to content

fix(runtime/tools): hard-cut trust boundary and lifecycle state handling#48

Merged
phantom5099 merged 1 commit intomainfrom
fork-pr-394-1776826146
Apr 22, 2026
Merged

fix(runtime/tools): hard-cut trust boundary and lifecycle state handling#48
phantom5099 merged 1 commit intomainfrom
fork-pr-394-1776826146

Conversation

@fennoai
Copy link
Copy Markdown

@fennoai fennoai Bot commented Apr 22, 2026

Requested by @phantom5099

Summary

  • Hard-cut metadata to runtime facts trust path; ignore untrusted MCP metadata for workspace/verification facts
  • Tighten default workspace write inference to explicit write-only action type
  • Make bash verification write trusted structured facts directly
  • Remove VERIFY_PASSED as standalone strong progress evidence
  • Harden workspace root permission fallback to reject symlink root on ErrPermission
  • Align TUI phase_changed handling for compacting/waiting_permission/stopped
  • Add regression tests for all above changes

Generated with [codeagent](https://github.com/qbox/codeagent)

Co-authored-by: phantom5099 <245659304+phantom5099@users.noreply.github.com>
@phantom5099 phantom5099 merged commit d1497c1 into main Apr 22, 2026
1 check passed
@fennoai fennoai Bot deleted the fork-pr-394-1776826146 branch April 22, 2026 03:22
phantom5099 pushed a commit that referenced this pull request May 2, 2026
test(cli): improve gateway runtime bridge coverage
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants