Skip to content

fix: register recent tenant-firewall surfaces #114

Description

@Jammy2211

Overview

PyAutoHeart reports six tenant-firewall mismatches introduced by recent
PyAutoBrain and PyAutoHands work. These are intentional policy inventories,
test fixtures, and explanatory examples, so they should be declared in the
firewall's frozen baseline without changing organ source or weakening detection.

Plan

  • Register the six intentional organ-code surfaces.
  • Keep the detector and affected Brain/Hands files unchanged.
  • Verify the full manifest and its negative drift behavior.
  • Refresh Heart after merge.
Detailed implementation plan

Affected Repositories

  • PyAutoMind (primary)

Branch Survey

Repository Current Branch Dirty?
PyAutoMind main unrelated draft plus task prompt

Suggested branch: feature/register-tenant-firewall-surfaces
Work classification: Library workflow
Worktree root: ~/Code/PyAutoLabs-wt/register-tenant-firewall-surfaces/

Implementation Steps

  1. Update scripts/repos_sync.py::FIREWALL_ALLOWLIST for the two hygiene
    scanners, clean-slate script/tests, hygiene tests, and notebook runner.
  2. Run python3 scripts/repos_sync.py --check.
  3. Run a negative probe proving undeclared facts still fail.
  4. Review, ship, merge with authorization, and refresh Heart.

Key Files

  • scripts/repos_sync.py — canonical firewall baseline

Original Prompt

Click to expand starting prompt

do the next bit of work

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions