Block a user
chore: standardize the ai-agent caller stub
fix(routing): expose agent skills in the roster
fix(routing): expose agent skills in the roster
@senior: One comment per agent run
security: isolate agent behavior from the caller repo
security: isolate agent behavior from the caller repo
Closing — abandoning the opencode.json quarantine approach. Decision: a caller repo's opencode.json permission block is the intended per-repo control (e.g. homelab's read-only node1 ssh…
One comment per agent run
@senior please proceed with issue #38 per the plan above (delegated by pm).
security: isolate agent behavior from the caller repo
Update after checking homelab: it has no opencode.json/.opencode/ (so config quarantine costs it nothing), but its AGENTS.md carries repo-specific ops knowledge agents need — the…
security: isolate agent behavior from the caller repo