Skip to content

fix: harden pexo-agent release safety - #18

Merged
Naniko0213 merged 1 commit into
mainfrom
codex/pexo-agent-0.3.13
Jul 21, 2026
Merged

fix: harden pexo-agent release safety#18
Naniko0213 merged 1 commit into
mainfrom
codex/pexo-agent-0.3.13

Conversation

@Naniko0213

Copy link
Copy Markdown
Collaborator

Summary

  • remove API-key placeholder literals that ClawHub flags as exposed secrets
  • disclose shell, network, file-transfer, and external-data boundaries
  • require confirmation for every billable batch by default and remove the no-confirmation mode
  • bump the GitHub package version to 0.3.13

Verification

  • Agent Skill validation passes
  • all shell scripts pass syntax and help checks
  • billing mode tests confirm always is the default, threshold is opt-in, and never is rejected
  • ClawHub channel package contains no API-key literal examples

@Naniko0213
Naniko0213 requested a review from pexoai as a code owner July 21, 2026 01:56
@Naniko0213
Naniko0213 merged commit ec4f207 into main Jul 21, 2026
1 check passed
@Naniko0213
Naniko0213 deleted the codex/pexo-agent-0.3.13 branch July 21, 2026 01:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant