Skip to content

Let VS Code users commit on protected branches without weakening Codex isolation#59

Merged
NagyVikt merged 1 commit intomainfrom
agent/codex/mate-edix-hu-vscode-main-manual-commit-allow
Apr 13, 2026
Merged

Let VS Code users commit on protected branches without weakening Codex isolation#59
NagyVikt merged 1 commit intomainfrom
agent/codex/mate-edix-hu-vscode-main-manual-commit-allow

Conversation

@NagyVikt
Copy link
Copy Markdown
Collaborator

Automated by scripts/agent-branch-finish.sh (PR flow).

…x isolation

Users need Source Control commits/pushes on main from VS Code, but Codex/agent sessions must still be forced through agent/* + PR flow.\n\nThis updates pre-commit and pre-push to allow protected-branch writes only for non-Codex VS Code Git context, keeps explicit Codex blocks, and synchronizes installer metadata/tests/docs so pre-push is treated as a managed hook.

Constraint: Preserve existing protected-branch safety guarantees for Codex/agents

Rejected: Global protected-branch bypass | would weaken guardrails outside VS Code context

Confidence: high

Scope-risk: moderate

Reversibility: clean

Directive: Keep template hooks and installed .githooks copies in sync when policy changes

Tested: npm test

Tested: node --check bin/multiagent-safety.js

Tested: npm pack --dry-run
@NagyVikt NagyVikt merged commit ed4f638 into main Apr 13, 2026
7 checks passed
@NagyVikt NagyVikt deleted the agent/codex/mate-edix-hu-vscode-main-manual-commit-allow branch April 13, 2026 15:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant