# Harden Enforcement Layers Implementation ## Summary Added pre-push hook, install-hooks.sh, plugin auto-registration, and prompt pre-edit checks to harden all enforcement layers. ## Changes ### New Files - `scripts/git-hooks/pre-push` — Blocks pushes when no task is in edit-allowed phase; catches `--no-verify` bypasses - `scripts/install-hooks.sh` — Installs pre-commit + pre-push hooks into a project - `scripts/register-guards.sh` — Auto-detects opencode/pi dev harnesses and registers guard plugins ### Modified Files - `contracts/harness-integration.md` — Updated to 4-layer enforcement model (added pre-push) - `prompts/doc_review.md` — Added pre-edit check section (MANDATORY) - `prompts/implement.md` — Added pre-edit check section (MANDATORY) - `prompts/orchestrate.md` — Added task creation section with clock-touch instructions - `scripts/install.sh` — Calls register-guards.sh post-install; updated hook installation docs - `scripts/update.sh` — Calls register-guards.sh; auto-installs hooks in current project - `scripts/upgrade.sh` — Installs both pre-commit and pre-push hooks (previously pre-commit only) - `system-prompt.md` — Added hook verification step and task-required-before-edits rule - `scripts/git-hooks/pre-commit` — Cleaned up error messages (removed bypass/upgrade instructions)