[medium] Release 1.1.0: Codex activation and evidence-based agent handoffs - #72
Merged
Merged
Conversation
…nt handoffs Address the configuration gap reported in #71: inspect both native gates, allow only an explicitly approved schema-confirmed local activation field, preserve unrelated settings, and distinguish configured from authenticated runtime verification. Adapt Superpowers task/report/review handoffs, whole-task and working-tree diff evidence, scoped re-review and durable recovery without mandatory agents or TDD for small frontend work. Extend existing behavior scenarios, update onboarding/install/release docs and all version metadata. Validated candidate: full skill-pack orchestration, 39 installer tests, 14 real-Git review helper tests, six targets, planning parity, archive fixtures, links and all quality gates. Add Linux/Windows helper CI. Authenticated four-role model/effort canaries remain explicitly unverified. Remove temporary source-transfer workflows from the final tree. No merge, tag, publication, production secrets or global trust changes.
Restrict new Windows transaction directories to the current SID before writing journal contents or changing configuration. Verify actual inherited file ACLs in the regression suite instead of treating POSIX chmod bits as Windows access control. Stop without writes when protection fails. Isolate the child Windows PowerShell module path from a PowerShell 7 parent; a native Windows diagnostic reproduced incompatible module auto-loading and verified the narrow fix without changing host security policy. Exact candidate passed full source/target/archive/link/quality validation plus 40 installer and 14 Git review tests on both Linux and Windows in run 34864742432. Update security documentation and release acceptance checklist. Remove both temporary audit workflows from the final tree. Authenticated Codex four-role model/effort canaries remain unverified; no release publication or main merge.
ytvee
marked this pull request as ready for review
September 15, 2026 00:29
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Release candidate 1.1.0, retaining 21 skills and the lightweight WebDev workflow. Related to #71. This updates the existing release PR; it does not merge, tag, publish or change user-project installations.
Superpowers-inspired task/report packets, task-wide Git review evidence, scoped repair re-review, shared retry budgets and structural-versus-behavioral evaluation remain. No mandatory TDD, universal worktrees, new runtime, provider, dependency or delegation for trivial tasks.
Workload-aware model routing
wdk_worker_lightandwdk_architect; three light/deep specialties are optional. Distinct roles prevent recommending conflicting fixed model/effort pairs under one name.lightis not an effort value.max/ultrarequire actual support, justified need, budget and compatible execution semantics; no automatic escalation for environment, path or permission errors.Verification
b5e281bc842cafd1a3f9859f6ccb74aae3538176: all PR and push workflows passed. PR evidence: source/six targets and Linux/Windows regressions, Ruff format/lint, YAML and Markdown, links. Exact-head push workflows also passed: source/helpers, quality, links. Working tree is clean. The last commit only records the completed canary correction; its schema/link checks and all CI passed after the full local validation of the implementation.Authenticated native dispatch
On Windows, authenticated Codex CLI/App Server 0.154.0-alpha.6.2 loaded nine registered project-local roles in the already user-trusted disposable fixture. No new global/trust/security changes were made. Parent
01a0a29d-fc8b-7370-8339-29aaa625b61aselected nativeagent_type, omitted explicit model/effort overrides and usedfork_turns: none, at most two concurrent children.wdk_lookup01a0a29e-5852-7ed1-abbd-30b9e649b864wdk_worker_light01a0a29e-6da0-7d53-a3ba-523f88385be5wdk_worker01a0a29e-ab80-77a2-819c-6b7f1b510bbawdk_reviewer_light01a0a29e-c4a2-73e3-94b5-3861959c6ef6wdk_complex01a0a29f-433f-7b53-b347-3e3114613254wdk_reviewer01a0a29f-598d-7cd1-95ec-d92953512163wdk_architect01a0a29f-e22c-70b2-a050-45f55384c2ecwdk_architect_deep01a0a29f-f7d1-7260-9a78-a5ae9ccab3c3wdk_reviewer_deep01a0a2a0-acc4-7a23-9428-77df3063c204Actual child turn-context metadata matched all nine bindings. Every child read the relevant fixture successfully (exit 0). Parent/children were read-only, approval never; parent network access false. Primary remained Sol/medium; managed native configuration passed hash inspection afterward. Architecture tasks identified scope-aware caching, stale responses, sensitive persistence, safe rollback and the impossibility of guaranteeing isolation while unsafe old clients continue unchanged. Reviewers correctly rejected the deliberately insufficient repair; that rejection is expected, not a failed reviewer test.
The first lookup returned correct data but paraphrased instead of quoting exactly: native dispatch passed, exact-output acceptance failed. Bootstrap now requires literal acceptance checks and bounded same-role correction. One follow-up stopped before delegation after guessing a nonexistent profile path; this is retained as a harness failure, not an accepted run or reason to raise model cost. Exact-path correction then passed: parent
01a0a2a4-724f-7482-a18b-aa7fd5736595, child01a0a2a4-cda5-7702-b6d5-859d8509583c, actual Luna/low, read exit 0, separate case-sensitive literal comparison true. Only that child was re-run; the original failure remains disclosed.These results supersede the previous dated trust blocker on this tested surface only. They do not establish direct-binding mode on another app surface, complete architecture-skill quality, universal client activation, savings or production readiness of the synthetic design. Account catalog, profiles, paths, raw traces and recovery journals remain outside source and release archives. Merge, issue closure and publication remain separate actions.