Commit Graph

6096 Commits

Author SHA1 Message Date
Michael Bolin
110d05accf config tests: assert permission profile runtime state 2026-04-30 09:57:03 -07:00
Michael Bolin
b43b0ebcf0 config tests: derive permission profiles directly 2026-04-30 09:53:01 -07:00
Michael Bolin
c142392c7f tui tests: assert permission profiles directly 2026-04-30 09:46:38 -07:00
Michael Bolin
f3fa7a67a9 config: gate legacy writable roots from profiles 2026-04-30 09:46:38 -07:00
Michael Bolin
f63f05f8a6 windows-sandbox: accept permission profiles from callers 2026-04-30 09:26:53 -07:00
Michael Bolin
6a9db12adb exec: localize legacy windows sandbox projection 2026-04-30 09:14:47 -07:00
Michael Bolin
2cbb225a49 session: stop exposing legacy sandbox policy 2026-04-30 08:58:19 -07:00
Michael Bolin
d507eb9ce0 protocol: remove legacy sandbox turn-context overrides 2026-04-30 08:58:19 -07:00
Michael Bolin
dd07fb5a2a protocol: drop legacy sandbox from user turns 2026-04-30 08:35:50 -07:00
Michael Bolin
b42ea0a808 protocol: require permission profiles for user turns 2026-04-30 08:22:28 -07:00
Michael Bolin
9c17b2dc03 protocol: canonicalize turn context permissions 2026-04-30 08:02:30 -07:00
Michael Bolin
71f7d562cd session: localize legacy sandbox turn fallback 2026-04-30 07:48:32 -07:00
Michael Bolin
976d8bc18a rollout-trace: record permission profiles 2026-04-30 07:42:42 -07:00
Michael Bolin
0259075ce6 protocol: make user-turn sandbox policy optional 2026-04-30 07:41:11 -07:00
Michael Bolin
2e8a66d44c session: tag turns with permission profiles 2026-04-30 07:26:46 -07:00
Michael Bolin
33ad223149 core tests: submit turns with permission profiles 2026-04-30 07:20:55 -07:00
Michael Bolin
7a367c3db7 turn-context: stop writing legacy sandbox policy 2026-04-30 07:15:36 -07:00
Michael Bolin
607dac40f8 app-server: normalize command sandbox overrides as profiles 2026-04-30 06:57:46 -07:00
Michael Bolin
3cbcb18aef app-server: validate turn sandbox overrides as profiles 2026-04-30 06:53:29 -07:00
Michael Bolin
2bc3c954e3 session: convert legacy sandbox updates before settings apply 2026-04-30 06:45:12 -07:00
Michael Bolin
0cdfe2544a sandboxing: exercise seatbelt with runtime policies 2026-04-30 06:34:23 -07:00
Michael Bolin
6058961865 app-server: compare resume sandbox from permission profile 2026-04-30 06:26:47 -07:00
Michael Bolin
4a90f76298 mcp: send sandbox metadata as permission profile only 2026-04-30 06:20:52 -07:00
Michael Bolin
513a439b8f thread-store: stop exposing legacy sandbox policy 2026-04-30 06:16:53 -07:00
Michael Bolin
035b1b8030 tui: centralize legacy sandbox projection 2026-04-30 06:07:05 -07:00
Michael Bolin
5d82aeefcc test support: derive turn sandbox from permission profiles 2026-04-30 05:32:17 -07:00
Michael Bolin
0d0d3d8d12 windows setup: derive sandbox from permission profile 2026-04-30 05:26:50 -07:00
Michael Bolin
22ef2d9dc3 exec tests: derive thread sandbox from profile 2026-04-30 05:21:34 -07:00
Michael Bolin
df12b83033 windows read grants: accept permission profiles 2026-04-30 05:21:34 -07:00
Michael Bolin
53f8983bf5 session tests: configure permissions with profiles 2026-04-30 05:21:34 -07:00
Michael Bolin
e411b9357a analytics tests: derive sandbox fixtures from profiles 2026-04-30 05:01:45 -07:00
Michael Bolin
3a0e5391bb approval tests: configure scenarios with permission profiles 2026-04-30 04:54:18 -07:00
Michael Bolin
5616730500 tui: hydrate thread permissions from profiles 2026-04-30 04:54:09 -07:00
Michael Bolin
79e7a6f053 rollout tests: seed turn contexts from permission profiles 2026-04-30 04:46:08 -07:00
Michael Bolin
fa0b3f30f4 state: extract rollout permissions from profiles 2026-04-30 04:46:08 -07:00
Michael Bolin
c6d275f2a5 state: derive metadata sandbox from permission profiles 2026-04-30 04:46:08 -07:00
Michael Bolin
fa4fad57f0 otel: report conversation permissions from profiles 2026-04-30 04:05:23 -07:00
Michael Bolin
37aa2f8157 protocol: drop cwd-less legacy profile constructor 2026-04-30 04:00:16 -07:00
Michael Bolin
c210b12f39 app-server-test-client: select permission profiles by name 2026-04-30 03:53:14 -07:00
Michael Bolin
3c5890a1ce session tests: configure runtime permissions directly 2026-04-30 03:47:14 -07:00
Michael Bolin
7364013fe0 tests: mutate spawn-agent permission profile directly 2026-04-30 03:43:57 -07:00
Michael Bolin
c886193921 app-server tests: select turn permission profiles by name 2026-04-30 03:39:50 -07:00
Michael Bolin
b6d55cd9f2 file-system: drop unused legacy sandbox constructor 2026-04-30 03:33:23 -07:00
Michael Bolin
2876493bae tests: use disabled profile in exec capture check 2026-04-30 03:28:48 -07:00
Michael Bolin
e894ac76f7 tests: use profile constructors in config checks 2026-04-30 03:26:51 -07:00
Michael Bolin
4cf7855a99 tests: use permission profiles in multi-agent config checks 2026-04-30 03:23:18 -07:00
Michael Bolin
52d200da00 tests: remove sandbox policy fixture from rollout trace 2026-04-30 03:20:17 -07:00
Michael Bolin
c48043f4e4 tests: use permission profiles in session network checks 2026-04-30 03:18:22 -07:00
Michael Bolin
8a2144d700 tests: use permission profiles in config loader checks 2026-04-30 03:18:22 -07:00
Michael Bolin
0fc2a7b068 tests: submit websocket turns with permission profiles 2026-04-30 03:08:22 -07:00