Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
11 changes: 11 additions & 0 deletions .github/copilot-instructions.md
Original file line number Diff line number Diff line change
Expand Up @@ -112,6 +112,17 @@ Never run `npm publish`, never add a publish or release workflow, and never intr
script that would build or publish on install. If a release is genuinely needed, that is a
maintainer decision to raise — not an agent action.

## 0.3 Multi-Repo / Multi-Session Guardrail (Critical)

- **Verify the target before repository actions.** Before any commit, push, or pull-request action,
check `git remote -v` (or an equivalent authoritative source) and confirm that the remote matches
the exact repository named by the task. Never assume.
- **Scope child sessions explicitly.** An orchestrator that creates child sessions across repositories
must state each child's exact repository scope in its task.
- **Keep authorization repository-specific.** Permission to make a change in one repository does not
authorize a matching change in another repository, including for consistency.
- **Stop on ambiguity.** If a task does not clearly identify its repository, ask before acting.

---


Expand Down
9 changes: 9 additions & 0 deletions .github/instructions/cross-repo.instructions.md
Original file line number Diff line number Diff line change
Expand Up @@ -238,6 +238,15 @@ relied upon.
- **One session ≈ one branch ≈ one PR.** Scope to a single unit of work.
- **Assign file ownership explicitly** when several sessions edit this repo in parallel, and state
which paths are off-limits.
- **Verify repository scope before repository actions.** Before any commit, push, or pull-request
action, check `git remote -v` (or an equivalent authoritative source) and confirm that the remote
matches the exact repository named by the task. Never infer this from the working directory alone.
- **State child repository scope.** When orchestrating child sessions across repositories, include the
exact repository each child may modify in that child's task.
- **Keep authorization repository-specific.** Permission to change one repository does not authorize
making the same change in another repository for consistency or any similar reason.
- **Stop on repository ambiguity.** If the task does not clearly identify its repository, ask before
taking action.
- **Push back on instructions that are wrong.** Treat a coordinator's suggestion that touches a
security invariant as a *question about the invariant* rather than an instruction — the question
form is self-cancelling when it turns out to be wrong. Some of the most valuable outcomes come
Expand Down
Loading