Skip to content

Add managed dangerous operation guard standard#10

Merged
andrei-hasna merged 2 commits into
mainfrom
task/bb544906-managed-guard-rollout
Jul 13, 2026
Merged

Add managed dangerous operation guard standard#10
andrei-hasna merged 2 commits into
mainfrom
task/bb544906-managed-guard-rollout

Conversation

@andrei-hasna

Copy link
Copy Markdown
Contributor

Summary

  • add a seeded dangerous-operation-guard-standard managed reference for station01 sustained coding-agent guard rollout
  • add Qwen Code settings to active managed config sync while keeping Gemini CLI retired/excluded
  • document Codewith/Codex PreToolUse hard-deny plus PermissionRequest approval semantics and native/wrapper fallback expectations for Claude, Qwen, OpenCode, Cursor, and Antigravity

Verification

  • env -u HASNA_INSTRUCTIONS_API_URL -u HASNA_INSTRUCTIONS_API_KEY bun run typecheck
  • env -u HASNA_INSTRUCTIONS_API_URL -u HASNA_INSTRUCTIONS_API_KEY bun test
  • env -u HASNA_INSTRUCTIONS_API_URL -u HASNA_INSTRUCTIONS_API_KEY bun run build
  • env -u HASNA_INSTRUCTIONS_API_URL -u HASNA_INSTRUCTIONS_API_KEY bun run src/cli/index.tsx package-manager-scan --fail-on-findings .
  • gitleaks protect --staged --no-banner
  • gitleaks detect --source . --no-banner --redact

Live blockers observed

  • global installed instructions CLI cloud-backed commands failed with 401 revoked API key; local instructions status --json worked
  • bun run check:package-secrets in this shell failed on existing home-level package-manager config findings; secret values were not printed and were not repaired

@andrei-hasna
andrei-hasna merged commit 01dcfde into main Jul 13, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant