docs: record sandbox runtime implementation and remaining auth gates
All checks were successful
ci / validate (push) Successful in 2m34s
All checks were successful
ci / validate (push) Successful in 2m34s
Assistant: codex Assistant-Model: gpt-6-astra Assistant-Session: 01a0726e-5232-73f2-aaca-2c05ceb62efb
This commit is contained in:
parent
ce37e1cb63
commit
9fa17dd39b
3 changed files with 41 additions and 0 deletions
|
|
@ -100,6 +100,15 @@ description: |
|
|||
establish the Claude route. Keep this intake open for the open-weight
|
||||
profile even after the first Claude profile is proven.
|
||||
|
||||
2026-09-05 owner implementation: SAND-WP-0015 now provides digest-pinned
|
||||
standalone Python runtime mounts and private HOME/XDG/TMP state. Real rein
|
||||
CLI startup proof d4de9531 passed with read-only runtime, absent source,
|
||||
clean worktree, cross-exec private-state persistence and workspace removal;
|
||||
owner API smoke and 132 tests pass. No production profile selects the
|
||||
temporary artifact, and no model call occurred. Claude workload auth mode/
|
||||
concrete lane, credential delivery, enforced egress, pinned Claude runtime,
|
||||
and deployment/Glas acceptance remain open in SAND-WP-0015-T04.
|
||||
|
||||
Done when a non-secret probe and one real rein command execute inside the
|
||||
namespace, the source checkout is not visible/mutable, required egress is
|
||||
explicit, and teardown removes the sandbox workspace.
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue