Skip to content

fix(hooks): session-start authority read mirrors the cli schema exactly and fails closed - #2838

Merged
namastex888 merged 1 commit into
devfrom
fix/hook-authority-mirror-fidelity
Aug 30, 2026
Merged

namastex888 merged 1 commit into
devfrom
fix/hook-authority-mirror-fidelity

Conversation

@namastex888

Copy link
Copy Markdown
Contributor

Re-review #2 of #2817 returned SHIP with two non-blocking MEDIUMs; this closes both.

M16 — the hook's authority read diverged from src/lib/orchestration-mode.ts in the fail-open direction: {"orchestration":{}} and extra keys under orchestration resolved to standalone (the CLI throws invalid_orchestration_authority), and it honoured a GENIE_CONFIG_FILE override the CLI never implemented — an operator following that CLAUDE.md line could have the CLI refusing local lifecycle while the hook opened genie.db on every session start. Now mirrors the strict schema exactly (same path $GENIE_HOME/config.json, mode required, no other keys, anything else fails closed). authority-barriers.test.ts asserts six rejected shapes and both accepted ones against the shipped bundle; session-context.cjs regenerated.

M17 — plugins/genie/README.md H3 row lists the two new degradation causes.

Validation: bun test src/lib/v5/authority-barriers.test.ts scripts/hook-bundle-parity.test.ts scripts/release-docs.test.ts → 57 pass; hook-content / hook-budgets / plugin-skills gates OK; typecheck clean.

🤖 Generated with Claude Code

https://claude.ai/code/session_018QrkgYMEEhrWTUo5E7Nkjg

…ly and fails closed

Re-review #2 (M16): the hook's self-contained authority read diverged from
src/lib/orchestration-mode.ts in the fail-OPEN direction — it accepted
{"orchestration":{}} and extra keys under orchestration as standalone (the
CLI throws invalid_orchestration_authority on both) and honored a
GENIE_CONFIG_FILE override the CLI never implemented, so a doc-following
operator could get the CLI refusing local lifecycle while the hook opened
genie.db on every session start. Mirror the strict schema exactly: same
path ($GENIE_HOME/config.json), mode required, no other keys, anything
else fails closed. The barrier fixture now asserts every rejected shape
and both accepted shapes; session-context.cjs regenerated.

M17: the shipped plugin README's H3 row now lists the two new degradation
causes (Orca authority; unreadable/invalid orchestration config).

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_018QrkgYMEEhrWTUo5E7Nkjg
@coderabbitai

coderabbitai Bot commented Aug 30, 2026

Copy link
Copy Markdown

Important

Review skipped

Auto reviews are disabled on base/target branches other than the default branch.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Path: .coderabbit.yaml

Review profile: ASSERTIVE

Plan: Pro Plus

Run ID: 89b668f4-cda0-4a7b-bb7b-ac280986d72e

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Aug 30, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-08-30T02:15:24.076835Z da2625a PR opened
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@namastex888
namastex888 merged commit 1db029d into dev Aug 30, 2026
18 checks passed
namastex888 added a commit that referenced this pull request Aug 30, 2026
…#2839)

Orchestrator ledger write: re-review #2 evidence block (pinned 0d0641f,
SHIP, zero CRITICAL/HIGH, 3984 tests), disposition tense refreshed, #2838
noted, and the human promotion sequence (#2822 + #2833 to main first, then
#2817 merge commit; SHIPPED only after merge + on-host dogfood).


Claude-Session: https://claude.ai/code/session_018QrkgYMEEhrWTUo5E7Nkjg

Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
@automagik-genie
automagik-genie deleted the fix/hook-authority-mirror-fidelity branch September 25, 2026 04:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant