Home

mweinbach / agent-coworker

publicmweinbach/agent-coworker
Overview Code History Branches Pull requestsIssuesInsights
main
HomeOverview Code PRsIssues

feat: make YOLO mode zero-prompt and unsandboxed

2 months ago

8c5824f
Authored
Claude7/6/2026, 4:14:12 PM
The workspace YOLO toggle previously only auto-approved ordinary command
approvals on the native runtime: commands still ran inside the OS sandbox
and every sandbox-denial escalation still prompted, so the toggle appeared
to do nothing. The Codex app-server runtime already lifted the sandbox
under YOLO; this aligns the native path on the same semantics.

- resolveSandboxPolicy now accepts yolo and lifts an unscoped,
  non-read-only session to danger-full-access; hard floors (explicit
  read-only mode, read-only roles, scoped children targetPaths) are never
  widened
- agent.ts passes yolo into the per-turn sandbox policy and ToolContext;
  the bash tool's fallback resolution matches
- the codex runtime's duplicated yolo/sandbox override is replaced by the
  shared resolver input
- InteractionManager auto-approves everything under YOLO, sandbox-denial
  retries included; hard floors never reach that path because bash never
  offers them an escalation
- desktop toggle renamed to "YOLO mode" with copy that says what it
  actually does; CLI/REPL/docs updated to match

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01DoiK2RdQDZCh1hMHpqHsQ9

Parentaa8542e

18 files changed
  • AGENTS.md+1−1
  • GEMINI.md+1−1
  • README.md+1−1
  • apps/desktop/src/ui/settings/pages/WorkspacesPage.tsx+8−9
  • docs/architecture.md+1−1
  • docs/bundling-guide.md+1−1
  • docs/sandbox.md+10−0
  • docs/websocket-protocol.md+2−2
src/agent.ts
+2
−0
  • src/cli/repl.ts+4−1
  • src/index.ts+3−1
  • src/platform/sandbox/policy.ts+11−1
  • src/runtime/codexAppServer/config.ts+7−21
  • src/server/session/InteractionManager.ts+6−3
  • src/tools/bash.ts+1−0
  • src/tools/context.ts+8−0
  • test/platform/sandbox.test.ts+55−0
  • test/server/interactionManager.approval.test.ts+6−7