fix(review): address dogfood-review findings — complete the no-persisted-task fix · Entire

fix(review): address dogfood-review findings — complete the no-persisted-task fix

5faec78·

peyton-alt·1w ago·11 files·+169 added/-35 removed

Ran the fixed entire review against this branch itself; its verdict identified that fd7d1cbd9 was incomplete and five smaller defects. All confirmed against the code:

Co-Authored-By: Claude Fable 5 noreply@anthropic.com

Sessions

d4ef50cdaee1View transcript

Changes

11

41 unmodified lines  
42  
43  
44  
45  
45  
46  
47  
48  
49  
48  
49  
50  
51  
52  
53  
54  
55  
56  

// Deliberately narrow: read-only git subcommands are enumerated instead of
// granting Bash(git:) — git can execute arbitrary code via aliases/hooks,
// and push/commit match the blanket pattern. Nothing write-capable (Edit,
// and push/commit match the blanket pattern. No file tools that write (Edit,
// Write) and never --dangerously-skip-permissions: reviewers process
// untrusted input (the diff under review), so the child must stay unable to
// modify the repo. --allowedTools ADDS to the user's own permission config;
// it cannot revoke anything.
var reviewToolAllowlist = []string{
"Read", "Grep", "Glob", "Task", "TodoWrite", "Skill",
"Bash(git diff:
)", "Bash(git log:)", "Bash(git show:)",


Mcmd/entire/cli/agent/claudecode/reviewer.go+7/-3

429 unmodified lines
430
431
432
433
433
434
435
436
47 unmodified lines

...


Mcmd/entire/cli/review/cmd.go+8/-7

775 unmodified lines

...


Mcmd/entire/cli/review/cmd_test.go+14

68 unmodified lines

...


Mcmd/entire/cli/review/configure_test.go+2/-2

433 unmodified lines

...


Mcmd/entire/cli/review/picker.go+2/-4

76 unmodified lines

...


Mcmd/entire/cli/review/picker_internal_test.go+14

98 unmodified lines

...


Mcmd/entire/cli/review/prompt.go+14/-1

291 unmodified lines

...


Mcmd/entire/cli/review/scope.go+19/-1

640 unmodified lines

...