feat(openshell): route selected policy changes through local control - #952
Merged
Merged
Conversation
This was referenced Oct 3, 2026
pengfei-threemoonslab
force-pushed
the
codex/openshell-inputs-945
branch
from
October 3, 2026 19:11
1aaf7b9 to
aef9493
Compare
pengfei-threemoonslab
changed the base branch from
codex/openshell-inputs-945
to
main
October 3, 2026 19:26
pengfei-threemoonslab
force-pushed
the
codex/openshell-routes-946
branch
from
October 3, 2026 19:26
87902b4 to
a0b07e1
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Selected OpenShell policy edits now reach the same conservative comparison and review rules through audit, diff, check, preflight, trigger and configured verify. Arbitrary selected filenames override the docs-only trigger; malformed inputs and link retargeting retain incomplete or review routes for every caller.
This is the fourth PR in the OpenShell stack, based on #951. Closes #946.
Validation: 15,027 full-suite tests passed with seven skips. The three failures exposed missing hook registration coverage and stale compiled documentation; those are fixed, and all eleven related public-surface checks pass. Focused route/input suites, Ruff, generated schemas and diff checks pass. The verifier reports
review_publishablefor the cumulative trust-root changes; human merge review remains required. Manifest-free verify stays advisory and grants no application release authority.