Skip to content

fix(hooks): harden every native harness contract - #19

Merged
TeoSlayer merged 1 commit into
mainfrom
fix/hook-contract-full-sweep
Aug 7, 2026
Merged

TeoSlayer merged 1 commit into
mainfrom
fix/hook-contract-full-sweep

Conversation

@TeoSlayer

Copy link
Copy Markdown
Collaborator

Summary

  • repair current MCP/hook configuration paths and migrations for Claude, Cline, Continue, Copilot, OpenClaw, OpenHands, Junie, Hermes, PicoClaw, Codex, Cursor, and Gemini
  • normalize real host payloads, retain post-failure evidence, require authoritative decisions, and enforce a fail-closed internal deadline
  • pin and harden the OpenClaw native plugin for tool and outbound-message controls
  • restore advertised doctor, tour, and identity lifecycle commands
  • version-lock npm, runtime, registry, server card, generated configs, and plugin artifacts at 0.2.12

Validation

  • npm test — 70/70
  • npm run lint
  • npm audit --audit-level=moderate — 0 vulnerabilities
  • packed tarball install, MCP initialize, version, heartbeat compatibility
  • packed unmanaged pass-through across all 10 native hook harnesses
  • idempotent/migration contract tests for all 12 setup writers

@TeoSlayer
TeoSlayer merged commit f4d5b61 into main Aug 7, 2026
1 check passed
@TeoSlayer
TeoSlayer deleted the fix/hook-contract-full-sweep branch August 7, 2026 10:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants