Skip to content

Enforce agent-branch workflow on protected branches by default#72

Merged
NagyVikt merged 1 commit intomainfrom
agent/codex/bia-edixai-com-codex-branch-enforcement
Apr 13, 2026
Merged

Enforce agent-branch workflow on protected branches by default#72
NagyVikt merged 1 commit intomainfrom
agent/codex/bia-edixai-com-codex-branch-enforcement

Conversation

@NagyVikt
Copy link
Copy Markdown
Collaborator

Automated by scripts/agent-branch-finish.sh (PR flow).

Codex edits in VS Code could bypass protected-branch guards when Codex session env markers were missing. This flips the default to block protected-branch commits/pushes in all contexts and keeps VS Code writes as an explicit per-repo opt-in.\n\nConstraint: Guardrails must still allow intentional local overrides for teams that want manual VS Code protected-branch operations\nRejected: Keep VS Code bypass default-on and rely on Codex env detection | Codex session markers are not always present in every integration surface\nConfidence: high\nScope-risk: moderate\nReversibility: clean\nDirective: Keep template and hydrated .githooks behavior aligned when editing guardrail hook logic\nTested: node --test test/install.test.js\nNot-tested: Live VS Code GUI commit/push flow against a real remote
@NagyVikt NagyVikt merged commit 1dc972d into main Apr 13, 2026
7 checks passed
@NagyVikt NagyVikt deleted the agent/codex/bia-edixai-com-codex-branch-enforcement branch April 13, 2026 19:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant