Skip to content

Extend the disclosure hook to kernel-origin and proactive dispatch paths #207

Description

@George-RD

Parent

Spec #204 (design ticket #192, wayfinder map #182)

What to build

Confirm and, where needed, fix the disclosure hook so it fires identically for kernel-origin dispatches (standing-rule fired sends, timer/headless lanes acting with no principal present — the Unattended workhorse story) as it does for worker-requested dispatches of the same rated action. No separate, ungated path may exist for proactive/autonomous outbound content — the fail-closed disclosure requirement applies the same whether or not a principal is present in the loop.

Acceptance criteria

  • A production-entering test: a kernel-origin (ActionOrigin::Kernel) dispatch of a rated messaging-send action with uncovered disclosure policy blocks and raises OwnerQuestion, exactly like a worker-origin dispatch.
  • If any kernel-origin / standing-rule / timer dispatch path is found to bypass the hook, it is fixed so it does not.
  • scripts/check.sh green.

Blocked by

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    ready-for-agentFully specified, ready for an AFK agent

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions