Peter Steinberger
|
68c674d37c
|
refactor(security): simplify system.run approval model
|
2026-03-11 01:43:06 +00:00 |
|
Peter Steinberger
|
7289c19f1a
|
fix(security): bind system.run approvals to exact argv text
|
2026-03-11 01:25:31 +00:00 |
|
Peter Steinberger
|
b1c30f0ba9
|
refactor: dedupe cli config cron and install flows
|
2026-03-02 19:57:33 +00:00 |
|
Peter Steinberger
|
03e689fc89
|
fix(security): bind system.run approvals to argv identity
|
2026-02-26 03:41:31 +01:00 |
|
Peter Steinberger
|
0f0a680d3d
|
fix(exec): block shell-wrapper positional argv approval smuggling
|
2026-02-24 15:17:03 +00:00 |
|
Brian Mendonca
|
bd8b9af9a7
|
fix(exec): bind env-prefixed shell wrappers to full approval text
(cherry picked from commit 1edf9579882d427322129dc434d0dadc0699102d)
|
2026-02-23 18:56:14 +00:00 |
|
Peter Steinberger
|
a96d89f343
|
refactor: unify exec wrapper resolution and parity fixtures
|
2026-02-22 10:26:44 +01:00 |
|
Peter Steinberger
|
2b63592be5
|
fix: harden exec allowlist wrapper resolution
|
2026-02-22 09:52:02 +01:00 |
|
Peter Steinberger
|
6007941f04
|
fix(security): harden and refactor system.run command resolution
|
2026-02-21 11:49:38 +01:00 |
|
Peter Steinberger
|
cb3290fca3
|
fix(node-host): enforce system.run rawCommand/argv consistency
|
2026-02-14 18:53:23 +01:00 |
|