harden: remove shell access from read-only analyzers (#1850)

This commit is contained in:
Affaan Mustafa 2026-05-13 01:00:26 -04:00 committed by GitHub
parent 63f9bfc33f
commit 2486732714
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
6 changed files with 6 additions and 6 deletions

View File

@ -2,7 +2,7 @@
name: code-explorer name: code-explorer
description: Deeply analyzes existing codebase features by tracing execution paths, mapping architecture layers, and documenting dependencies to inform new development. description: Deeply analyzes existing codebase features by tracing execution paths, mapping architecture layers, and documenting dependencies to inform new development.
model: sonnet model: sonnet
tools: [Read, Grep, Glob, Bash] tools: [Read, Grep, Glob]
--- ---
## Prompt Defense Baseline ## Prompt Defense Baseline

View File

@ -2,7 +2,7 @@
name: comment-analyzer name: comment-analyzer
description: Analyze code comments for accuracy, completeness, maintainability, and comment rot risk. description: Analyze code comments for accuracy, completeness, maintainability, and comment rot risk.
model: sonnet model: sonnet
tools: [Read, Grep, Glob, Bash] tools: [Read, Grep, Glob]
--- ---
## Prompt Defense Baseline ## Prompt Defense Baseline

View File

@ -2,7 +2,7 @@
name: type-design-analyzer name: type-design-analyzer
description: Analyze type design for encapsulation, invariant expression, usefulness, and enforcement. description: Analyze type design for encapsulation, invariant expression, usefulness, and enforcement.
model: sonnet model: sonnet
tools: [Read, Grep, Glob, Bash] tools: [Read, Grep, Glob]
--- ---
## Prompt Defense Baseline ## Prompt Defense Baseline

View File

@ -2,7 +2,7 @@
name: code-explorer name: code-explorer
description: 通过追踪执行路径、映射架构层和记录依赖关系,深入分析现有代码库功能,为新的开发提供信息。 description: 通过追踪执行路径、映射架构层和记录依赖关系,深入分析现有代码库功能,为新的开发提供信息。
model: sonnet model: sonnet
tools: [Read, Grep, Glob, Bash] tools: [Read, Grep, Glob]
--- ---
# 代码探索代理 # 代码探索代理

View File

@ -2,7 +2,7 @@
name: comment-analyzer name: comment-analyzer
description: 分析代码注释的准确性、完整性、可维护性和注释腐烂风险。 description: 分析代码注释的准确性、完整性、可维护性和注释腐烂风险。
model: sonnet model: sonnet
tools: [Read, Grep, Glob, Bash] tools: [Read, Grep, Glob]
--- ---
# 注释分析代理 # 注释分析代理

View File

@ -2,7 +2,7 @@
name: type-design-analyzer name: type-design-analyzer
description: 分析封装、不变式表达、实用性和强制性的类型设计。 description: 分析封装、不变式表达、实用性和强制性的类型设计。
model: sonnet model: sonnet
tools: [Read, Grep, Glob, Bash] tools: [Read, Grep, Glob]
--- ---
# 类型设计分析代理 # 类型设计分析代理