Skip to content

Preserve private native skill names and host policy in CLI 1.10.27 - #46

Merged
rudijetson merged 3 commits into
mainfrom
codex/native-skill-naming-20260929
Sep 29, 2026
Merged

rudijetson merged 3 commits into
mainfrom
codex/native-skill-naming-20260929

Conversation

@rudijetson

Copy link
Copy Markdown
Contributor

A renamed native skill could reappear under its old package name during install or update. This change reads a validated private native-skills.json policy while retaining stable package IDs and receipt filenames across install, update, sync, check, and removal. Exact renamed trees can be adopted; customized trees and ambiguous ownership are preserved safely. Schema-2 receipts remain readable, with schema 3 separating package identity from native name.

Prepares CLI 1.10.27 and patches fast-uri to 3.1.8 after the release audit identified two high-severity advisories. Generated output is in its own commit.

Validation: 825 tests pass, production audit reports zero vulnerabilities, focused debt scan reports zero findings, six-file package inventory passes, and nine compiled-CLI smoke commands verify aliases, host restrictions, idempotence, drift preservation, and removal. An independent Standards/Spec/Proof review passed and reproduced the bundle exactly. Live-state rehearsals preserved all 20 native trees across both Macs. Admin release verification and PR CI complete before merge; receipt backups and non-forced synchronization follow publication.

@rudijetson
rudijetson marked this pull request as ready for review September 29, 2026 20:02
@rudijetson
rudijetson merged commit be4593d into main Sep 29, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant