feat(runner): report the runtime tier and egress posture per session - #1148
Merged
trunk-io[bot] merged 1 commit intoSep 13, 2026
Conversation
This was referenced Sep 12, 2026
Merged
Merged
rigel-mintaka
added this pull request to stack #1126
September 12, 2026 14:32
|
Compass engineering docs preview: https://compass-service-owner-rig-35-3bn7.compass-eng-docs.pages.dev Deployed from |
This was referenced Sep 12, 2026
mattwilkinsonn
approved these changes
Sep 12, 2026
A green launch said nothing about which boundary an agent actually got, and the host tier has none. AgentSessionStatus now carries both the tier and the egress posture, stamped by the Runner because it is the component that resolved the backend. Posture is carried separately rather than derived from the tier: enforcement is a property of the backend, so a client inferring one from the other would render a stale answer the moment that changes. Both fields are backward-compatible appends, and an unrecognized value maps to UNSPECIFIED rather than a plausible default — on a security surface, saying nothing beats guessing. Tier identity rides a capability probe rather than widening the frozen WorkloadRuntime interface, matching the existing egress markers.
rigel-mintaka
force-pushed
the
compass-service-owner/rig-3512-egress-posture-wire
branch
from
September 12, 2026 19:37
68a27c8 to
b6f3d69
Compare
mattwilkinsonn
approved these changes
Sep 12, 2026
trunk-io
Bot
deleted the
compass-service-owner/rig-3512-egress-posture-wire
branch
September 13, 2026 00:29
|
This pull request was merged into |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR is part of a stack containing 10 PRs:
mainA green launch said nothing about which boundary an agent actually got, and the
host tier has none. AgentSessionStatus now carries both the tier and the egress
posture, stamped by the Runner because it is the component that resolved the
backend.
Posture is carried separately rather than derived from the tier: enforcement is
a property of the backend, so a client inferring one from the other would render
a stale answer the moment that changes. Both fields are backward-compatible
appends, and an unrecognized value maps to UNSPECIFIED rather than a plausible
default — on a security surface, saying nothing beats guessing.
Tier identity rides a capability probe rather than widening the frozen
WorkloadRuntime interface, matching the existing egress markers.