Skip to content

fix: validate selected plugin catalog on v0.3.1 - #30

Merged
rogue-shadowdancer merged 8 commits into
masterfrom
codex/v0.3.1-selected-catalog
Jul 29, 2026
Merged

fix: validate selected plugin catalog on v0.3.1#30
rogue-shadowdancer merged 8 commits into
masterfrom
codex/v0.3.1-selected-catalog

Conversation

@rogue-shadowdancer

Copy link
Copy Markdown
Owner

Summary

  • accept MCP-standard tools/list cursor and _meta parameters while preserving the 20-tool contract
  • add isolated Codex app-server selectedCapabilityRoots validation with a no-selection negative thread
  • advance the compatible runtime/install build to 0.3.1 without moving v0.3.0
  • require protected master, annotated tag, Release target, and installed sourceCommit to be identical

Validation

  • validate-public-release.ps1: 13/13 passed
  • selected app-server catalog: unselected 0; selected ready, 20 observed/20 unique, 0 tool calls
  • validate-install-source.ps1 -RequireCachebuster: 31 payload files
  • exact staged substantive review: ZERO ACTIONABLE FINDINGS

Safety

No real Hyper-V, VM, checkpoint, guest, credential, package, portable, driver, network, UI, evidence, or manual operation was performed for this recovery candidate.

Copilot AI review requested due to automatic review settings July 29, 2026 19:05

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot was unable to review this pull request because the user who requested the review has reached their quota limit.

@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head cdb4ff1. Focus on selectedCapabilityRoots acceptance correctness, tools/list compatibility, zero-tool-call safety, immutable v0.3.0 history, and same-commit v0.3.1 publication/install invariant.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: cdb4ff1ad8

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread TASK_HANDOFF.md
Comment thread contracts/v2/schemas/evidence.schema.json Outdated
@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head 4d13410 after the two resolved P1 fixes. Verify the fail-closed release/install/historical identity readback and v0.3.0/v0.3.1 evidence compatibility without cross-version acceptance.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 4d13410284

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread scripts/validate-v031-release-readback.ps1
Comment thread scripts/validate-v031-release-readback.ps1 Outdated
Comment thread scripts/validate-v031-release-readback.ps1
@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head dc7439a after the three resolved readback P1 fixes: mandatory reviewed SHA, literal frozen build, and full Get-HcrInstallCheck payload/ownership closure.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: dc7439af48

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread scripts/validate-v031-release-readback.ps1 Outdated
@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head e9ce588. The release readback now requires checkout HEAD == ExpectedMasterCommit and a completely clean plugin-source path before hashing the source inventory.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: e9ce588921

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread scripts/validate-v031-release-readback.ps1 Outdated
@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head d5fcbb5. Source closure now rejects assume-unchanged and skip-worktree flags before hashing.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: d5fcbb5a52

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread scripts/validate-v031-release-readback.ps1 Outdated
@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head b33d9d4. All reviewed-source Git reads and inventory hashing now run with replacement objects disabled and restore the caller environment.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: b33d9d4674

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread scripts/validate-v031-release-readback.ps1
@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head 7e516a3. All 31 payload files are now compared directly to ExpectedMasterCommit path blob OIDs with replacements disabled.

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 7e516a37d7

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread scripts/validate-v031-release-readback.ps1 Outdated
@rogue-shadowdancer

Copy link
Copy Markdown
Owner Author

@codex review

Please review exact head a9eb812. Raw payload comparison now uses binary cat-file bytes plus frozen checkout transformations and passed 31/31 in a fresh detached worktree.

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. You're on a roll.

Reviewed commit: a9eb8125ac

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

@rogue-shadowdancer
rogue-shadowdancer merged commit 8c97145 into master Jul 29, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants