Skip to content

Live claude-live FO boots the wrong root — a CI env leak lures the FO off its launch cwd#462

Merged
clkao merged 1 commit into
mainfrom
spacedock-ensign/claude-live-fo-wrong-root-env-leak
Jul 2, 2026
Merged

Live claude-live FO boots the wrong root — a CI env leak lures the FO off its launch cwd#462
clkao merged 1 commit into
mainfrom
spacedock-ensign/claude-live-fo-wrong-root-env-leak

Conversation

@clkao

@clkao clkao commented Jul 2, 2026

Copy link
Copy Markdown
Collaborator

The claude-live sonnet lane failed 2/2 on PR #446 from a harness false positive — no env leak existed; the detector flagged a harmless model-invented probe cd.

What changed

Evidence

  • Extended detector suite 15/15 subtests passed; repo-wide go test ./... 15/15 packages
  • Two-direction mutation testing: pre-fix detector re-reds both real streams byte-identical; wander fixtures hold 4/4

2w

…ation

The sonnet lane's speculative repo-root sniff cd's outside the fixture as a
harmless version probe before settling on its (correct) launch cwd; the
detector flagged ANY escaping cd as a wander, false-reding both PR #446 runs
even though each finished the scenario correctly. A bare cd now reds only when
the same command also carries a workflow-operative token (--workflow-dir,
--boot, --discover, status --read, state commit, new, README/entity path);
standalone --workflow-dir/README-read signatures are unaffected. Also rewords
the failure text off the disproved CI-env-leak cause.

Checks in the two archived PR #446 sonnet streams as replay testdata (both
return nil post-fix; reproduced the exact CI failures pre-fix) alongside the
four corroborated-wander fixtures (still 4/4 red).

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
@clkao
clkao temporarily deployed to CI-E2E-CODEX July 2, 2026 02:39 — with GitHub Actions Inactive
@clkao
clkao temporarily deployed to CI-E2E-OPUS July 2, 2026 02:39 — with GitHub Actions Inactive
@clkao
clkao merged commit 7457426 into main Jul 2, 2026
8 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant