docs(claude-config): route audit --fix through update-config and document auto-mode refusals - #5476
Conversation
…ment auto-mode refusals Refs #5376 Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
…uting Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
…pdate-config # Conflicts: # plugins/claude-config/.claude-plugin/plugin.json # plugins/claude-config/CHANGELOG.md
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
|
Claude encountered an error after 0s —— View job I'll analyze this and get back to you. |
|
Claude encountered an error after 0s —— View job I'll analyze this and get back to you. |
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: 703f3b0fea
ℹ️ About Codex in GitHub
Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".
…and link the refusal basis Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
|
Claude encountered an error after 0s —— View job I'll analyze this and get back to you. |
|
Claude encountered an error after 0s —— View job I'll analyze this and get back to you. |
Rebump claude-config to 0.53.4 above main's 0.53.3 and rewrap the Phase 5 prose. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
|
Claude finished @kyle-sexton's task in 1m 4s —— View job Security review — PR #5476
|
|
Claude finished @kyle-sexton's task in 2m 42s —— View job Reviewing PR #5476
Both Codex P1 comments on commit One new finding from this pass, posted inline: the added Phase 5 routing text says Summary
Verification note: the PR body's |
Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
update-config covers settings.json and settings.local.json only, so the Phase 5 routing no longer names .mcp.json. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
|
Claude finished @kyle-sexton's task in 2m 10s —— View job Security review — PR #5476
|
|
Claude finished @kyle-sexton's task in 2m 9s —— View job Code review complete
Scope: Prior finding, now resolved. The previous code-review pass on this lane (head The earlier Codex P1s (guarded orphan- Version/changelog parity — independently confirmed by reading the files: Verification scripts — I could not run No findings. Security concerns are out of scope for this lane (a separate security-review pass already ran on this PR and found nothing); nothing else in the diff — a docs-only change plus a version bump — introduces a correctness or maintainability issue. |
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: 8edfa81cd2
ℹ️ About Codex in GitHub
Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".
|
Claude finished @kyle-sexton's task in 1m 24s —— View job Security review — PR #5476
Scope reviewed (
Instruction-surface check.
No script, workflow, permission, or executable-code change is in this diff — it's documentation (plus a version bump and changelog entry) that tightens the existing edit path rather than loosening it. No injection, authorization, secret-handling, or instruction-poisoning surface is introduced or weakened. Result: no security findings. |
Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
|
Claude finished @kyle-sexton's task in 3m 48s —— View job Reviewing PR #5476
Scope: Finding, posted inline on both files: the new Phase 5 routing text (
I independently verified both via an adversarial second pass (a separate agent instance, given no context from this review, asked to actively look for reasons each was a false positive) before posting — both came back CONFIRMED. Everything else already resolved across this PR's history checks out at this head: the Verification note: the PR body's |
|
Claude finished @kyle-sexton's task in 3m 20s —— View job Security review — PR #5476
Scope reviewed (
Note on history. This branch merged Instruction-surface check. Everything else checked out clean:
Result: one IMPORTANT finding, posted inline on |
Phase 5 routes settings edits through update-config when it resolves and writes directly otherwise; the mutation gate and reference now agree. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
|
Claude finished @kyle-sexton's task in 2m 25s —— View job Code review complete
Scope: Both open P1s from the prior review pass (head
Both files stay internally consistent with the Boundary section ( No new findings. I read the full diff plus the surrounding unchanged Boundary/Mutation-gate/Presence sections it now has to agree with, and didn't find a fresh contradiction, gap, or maintainability issue introduced by this reconciliation. Verification note: Security concerns are out of scope for this lane (a security-review pass already ran clean on this PR). |
|
Claude finished @kyle-sexton's task in 1m 45s —— View job Security review — PR #5476
Scope reviewed (
Instruction-surface check. This commit is itself the reconciliation of the two P1s a prior review round on this PR raised against
Everything already resolved earlier in this PR's history stays intact at this head: No script, workflow, permission, or executable-code change is in this diff — documentation (plus a version bump and changelog entry) that tightens the existing edit path and removes the internal contradiction the prior review round identified. Result: no security findings. |

Closes #5376
Summary
claude-config:auditPhase 5--fixedited settings files directly and did not name the two auto-mode refusals a real run hits.Fix
SKILL.mdPhase 5 routes approvedsettings.json,settings.local.jsonand.mcp.jsonedits throughupdate-configand states the[Self-Modification]handshake.SKILL.mdgains "Refusals in auto mode":.claude/audit-pass.mdwrite refused as[Instruction Poisoning],audit-engine.shre-run refused as[Self-Modification], with the operator fallback and a verification record.context/procedures.mdcarries the same routing, refusals and fallback, pointing at the SKILL.md record.claude-config0.53.0 to 0.53.1 with a CHANGELOG entry.Verification
scripts/check-changelog-parity.sh --check --check-order: passes.scripts/validate-plugins.sh: all manifests and the catalog validated.update-config,[Self-Modification], both refusals and the fallback (see diff).Related
Refs #4514 (split out per the owner decision of 2026-09-29).
🤖 Generated with Claude Code