v0.3.13
Added
- Two production cgroup modes are now checkable on the same paced growth child: treatment (
MemorySwapMaxinfinity) still cooperatively terminates and reaps; control (MemorySwapMax=0) defers to kernel cgroup-OOM of the capped child. Both leave the host up. The uncapped-before-coma case stays inferred. metrics.sample()always includes corroboratingpsi_full_total,io_psi_some_avg10, andio_psi_full_avg10(Nonewhen unread). They are not kill rungs;host_health.memory_pressurestays blind to them.host_cgroup_memory_limitcarriesdeferas a bool (Truewhen both caps are finite and plausible, includingMemorySwapMax=0).round_cgroup_memorymay carry those PSI fields as optional flat keys at emit time; omitted when unread.
Docs
- SECURITY.md: isolation is the operator's job (
exec_prefix, dedicated user, no passwordless sudo, egress); agent-runner stays lifecycle-safety.
No config migration required. peek --json schema stays 2.6.