Draft
Tighten reference docs for artifact compatibility, audit JSON contracts, and safe-output safeguards#47117
Conversation
11 tasks
Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
Co-authored-by: pelikhan <4175913+pelikhan@users.noreply.github.com>
Copilot
AI
changed the title
[WIP] Update reference documentation for correctness and safeguards
Tighten reference docs for artifact compatibility, audit JSON contracts, and safe-output safeguards
Jul 21, 2026
This comment has been minimized.
This comment has been minimized.
Contributor
🤖 PR Triage
Score breakdown: Impact 12 · Urgency 8 · Quality 8
|
Contributor
🎉 Excellent Work!This PR is well-aligned with the project's contribution standards. The documentation updates are focused, comprehensive, and improve clarity across multiple reference pages:
The changes are focused, coherent, and thoroughly documented in the PR body. The implementation is ready for review by maintainers.
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This updates the SPDD reference pages that had gaps in safeguards, norms, and sync coverage. The changes make legacy behavior, missing-field conditions, experimental status, and cross-spec linkages explicit in the high-traffic docs most likely to be consumed directly.
Artifacts reference
safe-outputandagent-outputartifacts, including migration guidance toward the unifiedagentartifact and a removal floor.pkg/constants/....agentandfirewall-audit-logsrows with their implementation source.Audit reference
--jsonstability contract next to the--jsonflag docs for bothgh aw auditandgh aw logs.ambient_contextis absent instead of leaving it as an implicit “when available” field.Billing reference
gh aw compiledoes not auto-injectpermissions.copilot-requests: write; authors must declare it unless a higher-level authoring flow adds it explicitly.GH-AW as MCP server
--validate-actorbehavior whenGITHUB_ACTORis unset: privileged tools remain mounted but return permission errors.Safe outputs / pull requests
merge-pull-request.head-repo/ fork flows.Cross-repository reference
Example of the clarified JSON contract placement: