Files

12 lines
615 B
Markdown
Raw Permalink Normal View History

# Fix Guard Plugin Derailment
## Problem
The automaton-guard plugin (`plugins/automaton-guard/plugin.ts:61-64`) calls `client.chat()` with `role: "user"` when an edit is blocked. This injects synthetic user messages that can derail agent context mid-operation.
## Fix
Replace the `client.chat()` call with returning an error through the output mechanism, using `throw new Error()` or equivalent so the harness handles the rejection cleanly without contaminating the agent's message history.
## Verification
- Guard plugin rejects blocked edits without injecting user messages
- Agent context is not contaminated