Peter Steinberger
|
6acb43f294
|
fix: resolve channel typing regressions
|
2026-04-06 17:43:57 +01:00 |
|
Peter Steinberger
|
ce30557399
|
refactor(deadcode): remove orphaned core helpers
|
2026-04-06 17:26:25 +01:00 |
|
Peter Steinberger
|
a65f9971b7
|
refactor(deadcode): remove duplicate barrels and helper shims
|
2026-04-06 17:00:40 +01:00 |
|
Vincent Koc
|
9c3d9c5c18
|
chore(lint): drop stale repo lint comments
|
2026-04-06 16:01:23 +01:00 |
|
Peter Steinberger
|
21c82ca623
|
perf(test): trim security audit wrapper coverage
|
2026-04-06 14:13:08 +01:00 |
|
Vincent Koc
|
5fa166ed11
|
fix(check): repair status report typing drift
|
2026-04-06 13:34:08 +01:00 |
|
Peter Steinberger
|
49e3ecfe5e
|
perf(test): isolate deep probe finding helper
|
2026-04-06 13:29:35 +01:00 |
|
Peter Steinberger
|
10554644aa
|
perf(test): trim security gateway auth test path
|
2026-04-06 13:22:46 +01:00 |
|
Peter Steinberger
|
d4da45c202
|
perf(test): split remaining security audit coverage
|
2026-04-06 13:14:52 +01:00 |
|
Peter Steinberger
|
f1b6b97df3
|
perf(test): split security audit coverage
|
2026-04-06 13:05:39 +01:00 |
|
Vincent Koc
|
e611761809
|
fix(plugins): move acpx config contracts into manifests
|
2026-04-06 12:33:20 +01:00 |
|
Vincent Koc
|
4154bd707a
|
test(contracts): route bundled contract tests through sdk facades
|
2026-04-06 11:35:40 +01:00 |
|
Ayaan Zaidi
|
03523c65d5
|
fix: refresh web tool and audit typing
|
2026-04-06 14:05:49 +05:30 |
|
Peter Steinberger
|
2810a4f5b6
|
perf(test): split audit channel security coverage
|
2026-04-06 08:18:40 +01:00 |
|
Peter Steinberger
|
bb01e49192
|
refactor: share gateway auth and approval helpers
|
2026-04-06 07:41:08 +01:00 |
|
Peter Steinberger
|
9d92de42cf
|
perf(test): split security audit coverage
|
2026-04-06 07:32:12 +01:00 |
|
Peter Steinberger
|
3584d28141
|
refactor: harden plugin metadata and browser sdk seams
|
2026-04-05 23:35:02 +01:00 |
|
Peter Steinberger
|
471d056e2f
|
refactor: move browser runtime seams behind plugin metadata
|
2026-04-05 23:13:14 +01:00 |
|
Peter Steinberger
|
acd78e0c2f
|
refactor: split browser sdk seams
|
2026-04-05 17:17:16 +01:00 |
|
Peter Steinberger
|
629baf5fa7
|
refactor: move plugin setup and memory capabilities to registries
|
2026-04-05 14:53:53 +01:00 |
|
Peter Steinberger
|
1afa076cfa
|
refactor: simplify plugin auto-enable structure
|
2026-04-05 09:34:16 +01:00 |
|
Peter Steinberger
|
c5c5c77ebb
|
fix(ci): restore contract-safe core imports
|
2026-04-04 15:09:48 +01:00 |
|
Peter Steinberger
|
46cb493ac8
|
fix(sandbox): cover home credential bind audit
|
2026-04-04 20:27:10 +09:00 |
|
Peter Steinberger
|
a82bc7d887
|
fix(ci): align contract expectations
|
2026-04-04 12:29:11 +09:00 |
|
Vincent Koc
|
9e389cff3d
|
fix(config): migrate legacy group allow aliases (#60597)
* fix(config): migrate legacy group allow aliases
* fix(config): inline legacy streaming migration helpers
* refactor(config): rename legacy account matcher helper
* chore(agents): codify config contract boundaries
* fix(config): keep legacy allow aliases writable
* Update AGENTS.md
|
2026-04-04 11:15:32 +09:00 |
|
Peter Steinberger
|
ab318de8b7
|
test(plugins): finish moving contract coverage
|
2026-04-04 00:11:39 +01:00 |
|
Peter Steinberger
|
e4b5027c5e
|
refactor(plugins): move extension seams into extensions
|
2026-04-04 00:10:16 +01:00 |
|
Vincent Koc
|
0464435777
|
fix(ci): align windows builtin mock types
|
2026-04-04 03:57:48 +09:00 |
|
Peter Steinberger
|
bc23db501b
|
test: trim more core importOriginal usage
|
2026-04-03 19:49:43 +01:00 |
|
Peter Steinberger
|
03a43fe231
|
refactor(plugins): genericize core channel seams
|
2026-04-03 19:09:21 +01:00 |
|
Peter Steinberger
|
856592cf00
|
fix(outbound): restore generic delivery and security seams
|
2026-04-03 19:09:20 +01:00 |
|
Peter Steinberger
|
636a23b73e
|
test: extract node builtin mock helpers
|
2026-04-03 18:40:28 +01:00 |
|
Shakker
|
0af1d0ddb2
|
test: split security audit code safety coverage
|
2026-04-04 01:07:28 +09:00 |
|
Shakker
|
9a88a933cf
|
refactor: narrow audit browser enablement check
|
2026-04-03 16:39:47 +01:00 |
|
Shakker
|
2e520d112d
|
refactor: split browser sdk imports for sandbox and audit
|
2026-04-03 16:39:47 +01:00 |
|
Peter Steinberger
|
35e1605147
|
feat: add configurable context visibility
|
2026-04-03 04:34:57 +09:00 |
|
Vincent Koc
|
08962b6812
|
fix(browser): keep static helper seams cold (#59471)
* fix(browser): keep static helper seams cold
* fix(browser): narrow sandbox helper facade imports
* fix(browser): harden host inspection helpers
|
2026-04-02 17:12:32 +09:00 |
|
Gustavo Madeira Santana
|
91a7505af6
|
fix(tests): serialize shared channel audit state cases
|
2026-04-01 19:12:05 -04:00 |
|
Vincent Koc
|
5474796735
|
docs(security): clarify acpx yolo mode
|
2026-03-31 20:54:30 +09:00 |
|
Vincent Koc
|
b4ac69c652
|
docs(acp): align approval policy wording
|
2026-03-31 20:49:31 +09:00 |
|
Jacob Tomlinson
|
7bd2761b92
|
Exec approvals: detect command carriers in strict inline eval (#57842)
* Exec approvals: detect command carriers in strict inline eval
* Exec approvals: cover carrier option edge cases
* Exec approvals: cover make and find carriers
* Exec approvals: catch attached eval flags
* Exec approvals: keep sed -E out of inline eval
* Exec approvals: treat sed in-place flags as optional
|
2026-03-31 10:58:17 +01:00 |
|
Peter Steinberger
|
6b6ddcd2a6
|
test: speed up core runtime suites
|
2026-03-31 02:25:02 +01:00 |
|
joelnishanth
|
f849b8de97
|
hooks: default hooks.internal.enabled to true so bundled hooks load on fresh installs
Made-with: Cursor
|
2026-03-30 22:00:54 +05:30 |
|
Jacob Tomlinson
|
6b38815f86
|
fix(gateway): tighten tools invoke HTTP guardrails (#57771)
* fix(gateway): tighten tools invoke HTTP guardrails
Co-authored-by: Brian Mendonca <208517100+bmendonca3@users.noreply.github.com>
* fix(security): centralize gateway HTTP deny defaults
* fix(gateway): drop duplicate scope guard after rebase
---------
Co-authored-by: Brian Mendonca <208517100+bmendonca3@users.noreply.github.com>
|
2026-03-30 17:16:33 +01:00 |
|
Jacob Tomlinson
|
1a75906a6f
|
Exec approvals: prevent interpreter allow-always persistence (#57772)
* Exec approvals: block interpreter allow-always persistence
* Exec approvals: normalize interpreter allowlist formatting
* Exec approvals: normalize interpreter allowlist wrapping
* Exec approvals: tighten awk regression coverage
* Exec approvals: harden awk interpreter coverage
|
2026-03-30 17:03:54 +01:00 |
|
Jacob Tomlinson
|
29cb1e3c7e
|
Gateway: tighten HTTP tool invoke authorization (#57773)
* Gateway: harden HTTP tool invoke access
* Gateway: strengthen HTTP tools invoke regression coverage
* Gateway: keep owner-only tools off HTTP
|
2026-03-30 16:59:40 +01:00 |
|
qsam
|
47839d3b9a
|
fix(mattermost): detect stale websocket after bot disable/enable cycle (#53604)
Merged via squash.
Prepared head SHA: 818d437a54
Co-authored-by: Qinsam <19649380+Qinsam@users.noreply.github.com>
Co-authored-by: mukhtharcm <56378562+mukhtharcm@users.noreply.github.com>
Reviewed-by: @mukhtharcm
|
2026-03-30 07:54:59 +05:30 |
|
Peter Steinberger
|
471e059b69
|
refactor(plugin-sdk): remove channel-specific sdk shims
|
2026-03-30 01:03:24 +01:00 |
|
Peter Steinberger
|
276ccd2583
|
fix(exec): default implicit target to auto
|
2026-03-30 06:03:08 +09:00 |
|
Peter Steinberger
|
c48e0f8e6a
|
style: normalize import order and formatting
|
2026-03-29 16:33:22 +09:00 |
|