Skip to content

fix: require managed app targets for PR reviews - #5641

Merged
atomantic merged 1 commit into
mainfrom
codex/pr-reviewer-target-guard
Sep 1, 2026
Merged

fix: require managed app targets for PR reviews#5641
atomantic merged 1 commit into
mainfrom
codex/pr-reviewer-target-guard

Conversation

@atomantic

Copy link
Copy Markdown
Owner

Summary

  • centralize managed-app target requirements in the task registry
  • reject global on-demand PR-review requests before they can be queued
  • guard the global generator as a second fail-closed boundary

Test plan

  • npm test (server)
  • focused task schedule and CoS generator tests

This prevents a PR-review task from bypassing its direct local tool-free security preflight when no managed app is supplied.

@atomantic
atomantic merged commit 9edbe61 into main Sep 1, 2026
7 checks passed
@atomantic
atomantic deleted the codex/pr-reviewer-target-guard branch September 1, 2026 20:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant