You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Decide task policy for reserved Git environment variables #104
Currently, PR #102 strips repo-context and Git config control variables from the environment used by task setup, baseline, agent, and target commands. That is the right defensive move for base-only workspace isolation, but it creates a separate policy question for task-authored environment values: if a task YAML explicitly declares variables such as GIT_DIR, GIT_WORK_TREE, GIT_CONFIG_COUNT, or GIT_CONFIG_GLOBAL, should the runner silently strip them, reject the task as invalid, or document them as reserved?
Currently, PR #102 strips repo-context and Git config control variables from the environment used by task setup, baseline, agent, and target commands. That is the right defensive move for base-only workspace isolation, but it creates a separate policy question for task-authored environment values: if a task YAML explicitly declares variables such as
GIT_DIR,GIT_WORK_TREE,GIT_CONFIG_COUNT, orGIT_CONFIG_GLOBAL, should the runner silently strip them, reject the task as invalid, or document them as reserved?Why this should not be handled in #102:
Follow-up decision needed:
Suggested validation:
Source: