Skip to content

Add safe human handoff for source workflows - #59

Merged
Pigbibi merged 3 commits into
mainfrom
codex/qsl-g11-safe-source-handoff
Sep 1, 2026
Merged

Pigbibi merged 3 commits into
mainfrom
codex/qsl-g11-safe-source-handoff

Conversation

@Pigbibi

@Pigbibi Pigbibi commented Sep 1, 2026

Copy link
Copy Markdown
Contributor

Summary

  • Source workflows now use read-only contents: read permissions.
  • Generated output is emitted as a binary-safe patch plus HUMAN_REQUIRED receipt; artifacts upload with always().
  • The workflow no longer auto-creates a PR, merges, or deploys.

Fresh verification

  • uv run --locked --extra test python -m pytest -q — 134 passed
  • Ruff on modified Python files, actionlint on modified workflows, compileall, and git diff --check
  • Temporary Git probe: text/binary patch applies; receipt bytes are stable; handoff path invokes no remote command.

Pigbibi and others added 3 commits September 2, 2026 02:09
Co-Authored-By: Codex <noreply@openai.com>
Co-Authored-By: Codex <noreply@openai.com>
Co-Authored-By: Codex <noreply@openai.com>
@Pigbibi
Pigbibi merged commit 3ae23e1 into main Sep 1, 2026
2 checks passed
@Pigbibi
Pigbibi deleted the codex/qsl-g11-safe-source-handoff branch September 1, 2026 21:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant