Skip to content

Build portable agent-home v0.1.0 - #2

Merged
elix1er merged 2 commits into
mainfrom
agent/portable-agent-home-v1
Aug 16, 2026
Merged

elix1er merged 2 commits into
mainfrom
agent/portable-agent-home-v1

Conversation

@elix1er

@elix1er elix1er commented Aug 16, 2026

Copy link
Copy Markdown
Owner

Outcome

Turns the repository into an Apache-2.0 agent-home template with GitHub Issues as the canonical ledger, one portable Skill, Codex/Claude/ZCode packaging, and an optional user-owned Vercel MCP.

Safety boundary

  • default-deny capability manifest
  • eight task-only MCP tools; no shell/browser/HTTP/secret backdoor
  • Auth0 JWT/JWKS, OAuth scopes, GitHub identity allowlist
  • GitHub App or fine-grained token remains in the instance environment
  • no central service, telemetry, credentials, or author authority

Verification

  • npm run check
  • 13 unit/contract tests
  • production Next.js build
  • zero npm audit findings at moderate+
  • actionlint
  • Skill Creator validator
  • Codex Plugin Creator validator
  • Claude marketplace validator and isolated local install
  • live unauthenticated MCP challenge + protected-resource metadata

Deliberately external smoke

The four-client same-private-fork smoke requires a user-owned Auth0/Vercel deployment and client accounts. The hosted smoke workflow and release checklist are included; it is not falsely marked complete from unit tests.

@bolt-new-by-stackblitz

Copy link
Copy Markdown

Review PR in StackBlitz Codeflow Run & review this pull request in StackBlitz Codeflow.

@elix1er
elix1er marked this pull request as ready for review August 16, 2026 23:39
@elix1er
elix1er merged commit a52b22f into main Aug 16, 2026
@elix1er
elix1er deleted the agent/portable-agent-home-v1 branch August 16, 2026 23:39

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 9afb0aca21

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread src/tasks.ts
Comment on lines +119 to +120
await this.gateway.comment(number, event("claim", "verified", "Task moved to agent:active.", this.actor));
return this.gateway.update(number, { labels: nextLabels(issue, "agent:active") });

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P1 Badge Log success only after the state mutation

If the subsequent GitHub update fails because of a transient API error, rate limit, or permission problem, this comment permanently records a verified move to agent:active while the issue retains its previous state; the same ordering affects block and completion. Avoid publishing a successful audit result until the update succeeds, and handle the remaining comment-failure case explicitly so the canonical history cannot contradict the labels.

AGENTS.md reference: AGENTS.md:L9-L9

Useful? React with 👍 / 👎.

Comment on lines +69 to 70
labels: ['agent:inbox'],
});

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P2 Badge Add an audit comment when creating the weekly task

Each successful scheduled run now creates a labeled agent task, but the workflow only emits a runner notice and never comments on the new issue. Consequently this task mutation has no durable action/result/evidence event in the canonical ledger; add the same concise creation audit comment used by TaskService.createTask.

AGENTS.md reference: AGENTS.md:L9-L9

Useful? React with 👍 / 👎.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant