Fold all 10 residual isWindsurf branches in bin/install.js onto descriptor-driven hostBehaviors (byte-parity — no fold changes any install output): - 2 dead destructures dropped (uninstall, finishInstall); the dead `else if (isWindsurf)` legacy agent-loop arm removed (windsurf ∈ _DESCRIPTOR_AGENTS_RUNTIMES → unreachable). - skipSharedHooksInstall:true folds the two `!isWindsurf` shared-hooks exclusions. - legacyDevinSkillsCleanup:true folds the `.devin`→`.windsurf` one-time cleanup gate. - installsCommandBodiesForWorkflowDelegation:true folds the #1629 command-body copy (workflow-delegation target — load-bearing; local-install verified intact). - verificationStyle:"windsurf-workflows" folds the workflow-count report. - Corrected stale _LEGACY_SCAN_SUBDIR_NAMES + hooks-json manifest comments (cursor + windsurf). Zero live runtime==='windsurf'/isWindsurf branches remain across bin/install.js, install-engine.cts, surface.cts, runtime-artifact-conversion.cts (AC2 guard scans all four). UPGRADE (Cascade hook bus): wire GSD's write/command safety guards into Windsurf's native hook bus. New hooksSurface 'windsurf-hooks-json' (VALID_HOOKS_SURFACES 7→8, GATE A profile-marker-only allowlist, the HooksSurface union) + writeWindsurfHooksJson (Cursor-templated, Cascade's flat {hooks:{<event>:[{command}]}} shape) writing .windsurf/hooks.json with two BLOCKING pre-hooks: - pre_write_code → gsd-windsurf-pre-write.js: blocks writes to a file outside the active git worktree / into .git internals. - pre_run_command → gsd-windsurf-pre-command.js: conservative destructive-command deny-list (rm -rf of root/home incl. sudo/env/path-prefixed forms; fork bombs; force-push refspec forms — HEAD:main, +main, --force/-f — to main/master/next). Both use Cascade's protocol (stdin JSON, exit 2 + stderr to block, exit 0 to allow, fail-open on error/timeout). Tokenize-based classifier (no catastrophic-backtracking regex; 4096-char cap) with the fail-closed false-positives fixed post-review. The 4 advisory GSD guards + pre_mcp_tool_use + 5 post_* logging events are deliberately NOT wired: Cascade has no context-injection channel for advisory hooks and GSD has no MCP guard — porting them would be non-functional padding (documented; codebuddy #2098 / copilot #2099 faithful-subset precedent). extendedHookEvents stays []. Golden: the 2 guard scripts ship in the shared hook bundle (HOOKS_TO_COPY + the shared managed-hooks-registry), exactly like cursor's 6 gsd-cursor-*.js scripts — so the 8 shared-bundle runtimes' fixtures gain the 2 inert windsurf scripts + the registry hash (functionally inert for non-windsurf; the established cursor pattern). No install-output change beyond that (the folds are byte-parity; skip-bundle runtimes untouched). New scripts registered in managed-hooks-registry + build-hooks + INVENTORY. Tests: declarative-reference- windsurf (adapter/axes/fail-closed + AC2 guard) + windsurf-hooks-bridge (live exit-2 blocking + allow/fail-open + ReDoS-bound + writer/reconcile/remove idempotency); VALID_HOOKS_SURFACES pin updated to 8. Matrix hookBus delta + changeset (Changed). capability-registry regenerated. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
479 lines
13 KiB
JSON
479 lines
13 KiB
JSON
{
|
|
"families": {
|
|
"agents": [
|
|
"gsd-advisor-researcher",
|
|
"gsd-ai-researcher",
|
|
"gsd-assumptions-analyzer",
|
|
"gsd-code-fixer",
|
|
"gsd-code-reviewer",
|
|
"gsd-codebase-mapper",
|
|
"gsd-debug-session-manager",
|
|
"gsd-debugger",
|
|
"gsd-doc-classifier",
|
|
"gsd-doc-synthesizer",
|
|
"gsd-doc-verifier",
|
|
"gsd-doc-writer",
|
|
"gsd-domain-researcher",
|
|
"gsd-eval-auditor",
|
|
"gsd-eval-planner",
|
|
"gsd-executor",
|
|
"gsd-framework-selector",
|
|
"gsd-integration-checker",
|
|
"gsd-intel-updater",
|
|
"gsd-mempalace-curator",
|
|
"gsd-nyquist-auditor",
|
|
"gsd-pattern-mapper",
|
|
"gsd-phase-researcher",
|
|
"gsd-plan-checker",
|
|
"gsd-planner",
|
|
"gsd-project-researcher",
|
|
"gsd-research-synthesizer",
|
|
"gsd-roadmapper",
|
|
"gsd-security-auditor",
|
|
"gsd-ui-auditor",
|
|
"gsd-ui-checker",
|
|
"gsd-ui-researcher",
|
|
"gsd-user-profiler",
|
|
"gsd-verifier"
|
|
],
|
|
"commands": [
|
|
"/gsd-add-tests",
|
|
"/gsd-ai-integration-phase",
|
|
"/gsd-audit-fix",
|
|
"/gsd-audit-milestone",
|
|
"/gsd-audit-uat",
|
|
"/gsd-autonomous",
|
|
"/gsd-capture",
|
|
"/gsd-cleanup",
|
|
"/gsd-code-review",
|
|
"/gsd-complete-milestone",
|
|
"/gsd-config",
|
|
"/gsd-debug",
|
|
"/gsd-discuss-phase",
|
|
"/gsd-docs-update",
|
|
"/gsd-eval-review",
|
|
"/gsd-execute-phase",
|
|
"/gsd-explore",
|
|
"/gsd-extract-learnings",
|
|
"/gsd-fast",
|
|
"/gsd-forensics",
|
|
"/gsd-graphify",
|
|
"/gsd-health",
|
|
"/gsd-help",
|
|
"/gsd-import",
|
|
"/gsd-inbox",
|
|
"/gsd-ingest-docs",
|
|
"/gsd-manager",
|
|
"/gsd-map-codebase",
|
|
"/gsd-mempalace-capture",
|
|
"/gsd-mempalace-recall",
|
|
"/gsd-milestone-summary",
|
|
"/gsd-mvp-phase",
|
|
"/gsd-new-milestone",
|
|
"/gsd-new-project",
|
|
"/gsd-next",
|
|
"/gsd-ns-context",
|
|
"/gsd-ns-ideate",
|
|
"/gsd-ns-manage",
|
|
"/gsd-ns-project",
|
|
"/gsd-ns-review",
|
|
"/gsd-ns-workflow",
|
|
"/gsd-onboard",
|
|
"/gsd-pause-work",
|
|
"/gsd-phase",
|
|
"/gsd-plan-phase",
|
|
"/gsd-plan-review-convergence",
|
|
"/gsd-pr-branch",
|
|
"/gsd-profile-user",
|
|
"/gsd-progress",
|
|
"/gsd-quick",
|
|
"/gsd-resume-work",
|
|
"/gsd-review",
|
|
"/gsd-review-backlog",
|
|
"/gsd-secure-phase",
|
|
"/gsd-settings",
|
|
"/gsd-ship",
|
|
"/gsd-sketch",
|
|
"/gsd-spec-phase",
|
|
"/gsd-spike",
|
|
"/gsd-stats",
|
|
"/gsd-surface",
|
|
"/gsd-thread",
|
|
"/gsd-ui-phase",
|
|
"/gsd-ui-review",
|
|
"/gsd-ultraplan-phase",
|
|
"/gsd-undo",
|
|
"/gsd-update",
|
|
"/gsd-validate-phase",
|
|
"/gsd-verify-work",
|
|
"/gsd-workspace",
|
|
"/gsd-workstreams"
|
|
],
|
|
"workflows": [
|
|
"add-backlog.md",
|
|
"add-phase.md",
|
|
"add-tests.md",
|
|
"add-todo.md",
|
|
"ai-integration-phase.md",
|
|
"analyze-dependencies.md",
|
|
"audit-fix.md",
|
|
"audit-milestone.md",
|
|
"audit-uat.md",
|
|
"autonomous.md",
|
|
"check-todos.md",
|
|
"cleanup.md",
|
|
"code-review-fix.md",
|
|
"code-review.md",
|
|
"complete-milestone.md",
|
|
"debug.md",
|
|
"diagnose-issues.md",
|
|
"discovery-phase.md",
|
|
"discuss-phase-assumptions.md",
|
|
"discuss-phase-power.md",
|
|
"discuss-phase.md",
|
|
"do.md",
|
|
"docs-update.md",
|
|
"edit-phase.md",
|
|
"eval-review.md",
|
|
"execute-phase.md",
|
|
"execute-plan.md",
|
|
"explore.md",
|
|
"extract-learnings.md",
|
|
"fast.md",
|
|
"forensics.md",
|
|
"graduation.md",
|
|
"health.md",
|
|
"help.md",
|
|
"import.md",
|
|
"inbox.md",
|
|
"ingest-docs.md",
|
|
"insert-phase.md",
|
|
"list-phase-assumptions.md",
|
|
"list-seeds.md",
|
|
"list-workspaces.md",
|
|
"manager.md",
|
|
"map-codebase.md",
|
|
"milestone-summary.md",
|
|
"mvp-phase.md",
|
|
"new-milestone.md",
|
|
"new-project.md",
|
|
"new-workspace.md",
|
|
"next.md",
|
|
"node-repair.md",
|
|
"note.md",
|
|
"onboard.md",
|
|
"pause-work.md",
|
|
"plan-milestone-gaps.md",
|
|
"plan-phase.md",
|
|
"plan-review-convergence.md",
|
|
"plant-seed.md",
|
|
"pr-branch.md",
|
|
"profile-user.md",
|
|
"progress.md",
|
|
"quick.md",
|
|
"reapply-patches.md",
|
|
"remove-phase.md",
|
|
"remove-workspace.md",
|
|
"resume-project.md",
|
|
"review.md",
|
|
"scan.md",
|
|
"secure-phase.md",
|
|
"session-report.md",
|
|
"settings-advanced.md",
|
|
"settings-integrations.md",
|
|
"settings.md",
|
|
"ship.md",
|
|
"sketch-wrap-up.md",
|
|
"sketch.md",
|
|
"smart-entry.md",
|
|
"spec-phase.md",
|
|
"spike-wrap-up.md",
|
|
"spike.md",
|
|
"stats.md",
|
|
"sync-skills.md",
|
|
"thread.md",
|
|
"transition.md",
|
|
"ui-phase.md",
|
|
"ui-review.md",
|
|
"ultraplan-phase.md",
|
|
"undo.md",
|
|
"update.md",
|
|
"validate-phase.md",
|
|
"verify-phase.md",
|
|
"verify-work.md"
|
|
],
|
|
"references": [
|
|
"agent-contracts.md",
|
|
"agent-skills-bootstrap.md",
|
|
"ai-evals.md",
|
|
"ai-frameworks.md",
|
|
"api-coverage.md",
|
|
"artifact-types.md",
|
|
"autonomous-smart-discuss.md",
|
|
"checkpoints.md",
|
|
"common-bug-patterns.md",
|
|
"context-budget.md",
|
|
"continuation-format.md",
|
|
"debugger-philosophy.md",
|
|
"decimal-phase-calculation.md",
|
|
"doc-conflict-engine.md",
|
|
"domain-probes.md",
|
|
"edge-probe.md",
|
|
"execute-mvp-tdd.md",
|
|
"execute-phase-between-wave-reset.md",
|
|
"execute-phase-context-guard.md",
|
|
"execute-phase-wave-guard.md",
|
|
"executor-examples.md",
|
|
"gate-prompts.md",
|
|
"gates.md",
|
|
"git-integration.md",
|
|
"git-planning-commit.md",
|
|
"gsd-run-resolver.md",
|
|
"honest-verifier.md",
|
|
"ios-scaffold.md",
|
|
"loop-hook-dispatch.md",
|
|
"mandatory-initial-read.md",
|
|
"model-profile-resolution.md",
|
|
"model-profiles.md",
|
|
"mvp-concepts.md",
|
|
"phase-argument-parsing.md",
|
|
"planner-antipatterns.md",
|
|
"planner-chunked.md",
|
|
"planner-gap-closure.md",
|
|
"planner-graphify-auto-update.md",
|
|
"planner-guidance.md",
|
|
"planner-human-verify-mode.md",
|
|
"planner-interface-context.md",
|
|
"planner-load-graph-context.md",
|
|
"planner-mvp-mode.md",
|
|
"planner-reviews.md",
|
|
"planner-revision.md",
|
|
"planner-source-audit.md",
|
|
"planning-config.md",
|
|
"prohibition-probe.md",
|
|
"project-skills-discovery.md",
|
|
"questioning.md",
|
|
"research-documentation-lookup.md",
|
|
"research-philosophy.md",
|
|
"research-verification-protocol.md",
|
|
"reviewer-instances.md",
|
|
"revision-loop.md",
|
|
"scout-codebase.md",
|
|
"security-asvs-levels.md",
|
|
"skeleton-template.md",
|
|
"sketch-interactivity.md",
|
|
"sketch-theme-system.md",
|
|
"sketch-tooling.md",
|
|
"sketch-variant-patterns.md",
|
|
"specless-probe-fallback.md",
|
|
"spidr-splitting.md",
|
|
"tdd.md",
|
|
"thinking-models-debug.md",
|
|
"thinking-models-execution.md",
|
|
"thinking-models-planning.md",
|
|
"thinking-models-research.md",
|
|
"thinking-models-verification.md",
|
|
"thinking-partner.md",
|
|
"ui-brand.md",
|
|
"ui-consideration-probe.md",
|
|
"universal-anti-patterns.md",
|
|
"untrusted-input-boundary.md",
|
|
"user-profiling.md",
|
|
"user-story-template.md",
|
|
"verification-overrides.md",
|
|
"verification-patterns.md",
|
|
"verify-mvp-mode.md",
|
|
"workstream-flag.md",
|
|
"worktree-branch-check.md",
|
|
"worktree-path-safety.md"
|
|
],
|
|
"cli_modules": [
|
|
"active-workstream-store.cjs",
|
|
"adapter-declarative.cjs",
|
|
"adapter-imperative.cjs",
|
|
"adr-parser.cjs",
|
|
"agent-command-router.cjs",
|
|
"agent-install-check.cjs",
|
|
"api-coverage.cjs",
|
|
"artifacts.cjs",
|
|
"assumption-delta.cjs",
|
|
"audit-command-router.cjs",
|
|
"audit.cjs",
|
|
"capability-activation.cjs",
|
|
"capability-consent.cjs",
|
|
"capability-ledger.cjs",
|
|
"capability-lifecycle.cjs",
|
|
"capability-loader.cjs",
|
|
"capability-lock.cjs",
|
|
"capability-registry.cjs",
|
|
"capability-source.cjs",
|
|
"capability-state.cjs",
|
|
"capability-trust.cjs",
|
|
"capability-validator.cjs",
|
|
"capability-writer.cjs",
|
|
"check-command-router.cjs",
|
|
"cjs-command-router-adapter.cjs",
|
|
"claude-orchestration-command-router.cjs",
|
|
"claude-orchestration.cjs",
|
|
"cli-exit.cjs",
|
|
"cli-skew-check.cjs",
|
|
"clock.cjs",
|
|
"clusters.cjs",
|
|
"code-review-flags.cjs",
|
|
"command-aliases.cjs",
|
|
"command-arg-projection.cjs",
|
|
"command-roster.cjs",
|
|
"command-routing-hub.cjs",
|
|
"commands.cjs",
|
|
"config-loader.cjs",
|
|
"config-schema.cjs",
|
|
"config-types.cjs",
|
|
"config.cjs",
|
|
"configuration.cjs",
|
|
"context-utilization.cjs",
|
|
"core-utils.cjs",
|
|
"coverage.cjs",
|
|
"decisions.cjs",
|
|
"docs.cjs",
|
|
"drift.cjs",
|
|
"edge-probe.cjs",
|
|
"embedding-adapter.cjs",
|
|
"eval-command-router.cjs",
|
|
"eval.cjs",
|
|
"external-descriptor-trust.cjs",
|
|
"external-job.cjs",
|
|
"fallow-runner.cjs",
|
|
"federated-config.cjs",
|
|
"frontmatter.cjs",
|
|
"gap-checker.cjs",
|
|
"gate-predicate-evaluator.cjs",
|
|
"git-base-branch.cjs",
|
|
"graphify-command-router.cjs",
|
|
"graphify.cjs",
|
|
"gsd2-import.cjs",
|
|
"handshake-serialized.cjs",
|
|
"hook-bus.cjs",
|
|
"host-integration-sdk.cjs",
|
|
"host-integration.cjs",
|
|
"init-command-router.cjs",
|
|
"init.cjs",
|
|
"install-effort-resolver.cjs",
|
|
"install-engine.cjs",
|
|
"install-profiles.cjs",
|
|
"installer-migration-authoring.cjs",
|
|
"installer-migration-report.cjs",
|
|
"installer-migrations.cjs",
|
|
"intel-command-router.cjs",
|
|
"intel.cjs",
|
|
"io.cjs",
|
|
"learnings.cjs",
|
|
"legacy-cleanup.cjs",
|
|
"loop-host-contract.cjs",
|
|
"loop-resolver.cjs",
|
|
"markdown-sectionizer.cjs",
|
|
"mcp-server.cjs",
|
|
"milestone.cjs",
|
|
"model-adapter.cjs",
|
|
"model-catalog.cjs",
|
|
"model-profiles.cjs",
|
|
"model-resolver.cjs",
|
|
"normalize-test-command.cjs",
|
|
"onboard-projection.cjs",
|
|
"package-identity.cjs",
|
|
"package-legitimacy.cjs",
|
|
"phase-command-router.cjs",
|
|
"phase-id.cjs",
|
|
"phase-lifecycle.cjs",
|
|
"phase-locator.cjs",
|
|
"phase.cjs",
|
|
"phases-command-router.cjs",
|
|
"plan-drift-guard.cjs",
|
|
"plan-scan.cjs",
|
|
"planning-workspace.cjs",
|
|
"probe-core.cjs",
|
|
"profile-output.cjs",
|
|
"profile-pipeline-command-router.cjs",
|
|
"profile-pipeline.cjs",
|
|
"prohibition-enforcement.cjs",
|
|
"project-root.cjs",
|
|
"prompt-budget.cjs",
|
|
"research-provider.cjs",
|
|
"research-store.cjs",
|
|
"resolution.cjs",
|
|
"review-reviewer-selection.cjs",
|
|
"roadmap-command-router.cjs",
|
|
"roadmap-parser.cjs",
|
|
"roadmap-upgrade.cjs",
|
|
"roadmap.cjs",
|
|
"runtime-artifact-conversion.cjs",
|
|
"runtime-artifact-install-plan.cjs",
|
|
"runtime-artifact-layout.cjs",
|
|
"runtime-config-adapter-registry.cjs",
|
|
"runtime-homes.cjs",
|
|
"runtime-hooks-surface.cjs",
|
|
"runtime-name-policy.cjs",
|
|
"runtime-slash.cjs",
|
|
"schema-detect.cjs",
|
|
"secrets.cjs",
|
|
"security.cjs",
|
|
"semver-compare.cjs",
|
|
"shell-command-projection.cjs",
|
|
"smart-entry.cjs",
|
|
"spec-section.cjs",
|
|
"stale-bake-guard.cjs",
|
|
"state-command-router.cjs",
|
|
"state-document.cjs",
|
|
"state-io.cjs",
|
|
"state-transition.cjs",
|
|
"state.cjs",
|
|
"surface.cjs",
|
|
"task-command-router.cjs",
|
|
"teams-status.cjs",
|
|
"template.cjs",
|
|
"uat-predicate.cjs",
|
|
"uat.cjs",
|
|
"ui-consideration-probe.cjs",
|
|
"ui-safety-gate.cjs",
|
|
"update-context.cjs",
|
|
"validate-command-router.cjs",
|
|
"validate.cjs",
|
|
"verification-command-router.cjs",
|
|
"verification.cjs",
|
|
"verify-command-router.cjs",
|
|
"verify.cjs",
|
|
"workstream-inventory-builder.cjs",
|
|
"workstream-inventory.cjs",
|
|
"workstream-name-policy.cjs",
|
|
"workstream.cjs",
|
|
"worktree-base-ref.cjs",
|
|
"worktree-safety.cjs"
|
|
],
|
|
"hooks": [
|
|
"gsd-check-update-worker.js",
|
|
"gsd-check-update.js",
|
|
"gsd-config-reload.js",
|
|
"gsd-context-monitor.js",
|
|
"gsd-cursor-post-tool.js",
|
|
"gsd-cursor-pre-tool.js",
|
|
"gsd-cursor-session-start.js",
|
|
"gsd-cursor-stop.js",
|
|
"gsd-cursor-subagent-start.js",
|
|
"gsd-cursor-subagent-stop.js",
|
|
"gsd-ensure-canonical-path.js",
|
|
"gsd-graphify-update.sh",
|
|
"gsd-phase-boundary.sh",
|
|
"gsd-prompt-guard.js",
|
|
"gsd-read-guard.js",
|
|
"gsd-read-injection-scanner.js",
|
|
"gsd-session-state.sh",
|
|
"gsd-statusline.js",
|
|
"gsd-update-banner.js",
|
|
"gsd-validate-commit.sh",
|
|
"gsd-windsurf-pre-command.js",
|
|
"gsd-windsurf-pre-write.js",
|
|
"gsd-workflow-guard.js",
|
|
"gsd-worktree-path-guard.js"
|
|
]
|
|
}
|
|
}
|