Skip to content

Harden Codex maintenance seams - #2

Merged
dd3ok merged 4 commits into
mainfrom
agent/harden-maintenance-seams
Aug 13, 2026
Merged

Harden Codex maintenance seams#2
dd3ok merged 4 commits into
mainfrom
agent/harden-maintenance-seams

Conversation

@dd3ok

@dd3ok dd3ok commented Aug 13, 2026

Copy link
Copy Markdown
Owner

Summary

  • keep Codex storage inspection opaque and read-only while isolating optional CLI probes
  • make doctor --json opt-in, preserve caller CWD, and reject unknown schemas without interpreting them
  • block archive/delete automation and keep unarchive outside this storage skill
  • update the canonical user-skill path and document external state/log coverage limits

Safety and compatibility

  • inventory survives unavailable or unsupported Codex launchers
  • doctor, version, and lifecycle capability failures are reported explicitly and independently
  • no raw Codex database, rollout, process, plugin, or cache mutation is implemented
  • future opaque top-level storage remains measurable without private-format knowledge

Validation

  • python -I -B .\codex-cleaner\scripts\test_codex_storage_guard.py (14 tests)
  • isolated skill-creator quick validation with PyYAML
  • live Codex 0.147.0-alpha.6.6 default and opt-in doctor probes
  • Standards review: no findings
  • Spec review against the official/integrated audit: no findings

@dd3ok
dd3ok marked this pull request as ready for review August 13, 2026 06:30
@dd3ok
dd3ok merged commit eabf8ed into main Aug 13, 2026
6 checks passed
@dd3ok
dd3ok deleted the agent/harden-maintenance-seams branch August 13, 2026 06:30
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant