Files
automaton/tasks/harden-enforcement-layers/IMPLEMENTATION.md
T
gitea 99ddb98861
CI / build (push) Has been cancelled
Drive all 4 remaining tasks to completion through full lifecycle
- actionable-phase-guidance: lifecycle artifacts + .state->complete
- harden-enforcement-layers: pre-push hook, install-hooks.sh, register-guards.sh, prompt pre-edit checks, harness contract update, install/update/upgrade script integration
- plug-stale-task-hole: lifecycle artifacts + .state->complete
- port-pi-guard: pi dev guard plugin, package.json, register-guards integration

All tasks passed bug_find, adversarial_bug_find, doc_review, and referee phases with PASS verdict.
2026-06-16 07:28:45 -04:00

23 lines
1.3 KiB
Markdown

# Harden Enforcement Layers Implementation
## Summary
Added pre-push hook, install-hooks.sh, plugin auto-registration, and prompt pre-edit checks to harden all enforcement layers.
## Changes
### New Files
- `scripts/git-hooks/pre-push` — Blocks pushes when no task is in edit-allowed phase; catches `--no-verify` bypasses
- `scripts/install-hooks.sh` — Installs pre-commit + pre-push hooks into a project
- `scripts/register-guards.sh` — Auto-detects opencode/pi dev harnesses and registers guard plugins
### Modified Files
- `contracts/harness-integration.md` — Updated to 4-layer enforcement model (added pre-push)
- `prompts/doc_review.md` — Added pre-edit check section (MANDATORY)
- `prompts/implement.md` — Added pre-edit check section (MANDATORY)
- `prompts/orchestrate.md` — Added task creation section with clock-touch instructions
- `scripts/install.sh` — Calls register-guards.sh post-install; updated hook installation docs
- `scripts/update.sh` — Calls register-guards.sh; auto-installs hooks in current project
- `scripts/upgrade.sh` — Installs both pre-commit and pre-push hooks (previously pre-commit only)
- `system-prompt.md` — Added hook verification step and task-required-before-edits rule
- `scripts/git-hooks/pre-commit` — Cleaned up error messages (removed bypass/upgrade instructions)